Manual Chapter : Customizing detection of removed dynamic scripts

Applies To:

  • BIG-IP FPS

    21.0.0, 17.5.1, 17.5.0, 17.1.3, 17.1.2, 17.1.1, 17.1.0, 17.0.0, 16.1.6, 16.1.5, 16.1.4, 16.1.3, 16.1.2, 16.1.1, 16.1.0, 16.0.1, 16.0.0, 15.1.9, 15.1.8, 15.1.7, 15.1.6, 15.1.5, 15.1.4, 15.1.3, 15.1.2, 15.1.0

Customizing detection of removed dynamic scripts

Dynamic scripts removal detection is performed only on URLs where this malware check is enabled.

When the BIG-IP system performs the dynamic scripts removal detection malware check, it checks if certain functions on a default list are called by removed dynamic scripts. Customize this malware check if you want to add or remove functions from this default list.

  1. On the Main tab, click Security > Fraud Protection Service > Anti-Fraud Profiles.

    The Anti-Fraud Profiles screen opens.

  2. From the list of profiles, select the relevant profile.

    The Anti-Fraud Profile Properties screen opens.

  3. In the Anti-Fraud Configuration area, click Malware Detection > General Settings.

  4. Click Advanced in the Malware Detection area of the screen.

  5. In the Dynamic Script Removal Detection for these additional functions field, add names of functions that you want the system to check if they are called by removed dynamic scripts when it performs the Dynamic Script Removal detection malware check.

    Note: Removed dynamic scripts from domains that are found in the Allow URLs from these external domains list in the Malware Detection area are ignored.

  6. In the Ignore Dynamic Script Removal Detection for these functions field, add names of functions that you want the system to ignore when it performs the Dynamic Script Removal detection malware check.

    The functions you add in this field must be functions that appear on the default list of functions.

  7. Click Save.

    The anti-fraud profile is updated with the changes you made.