Manual Chapter :
Leaked Credential Check with Brute Force Protection
Applies To:
Show Versions
BIG-IP ASM
- 17.5.0, 17.1.2, 17.1.1, 17.1.0, 17.0.0, 16.1.5, 16.1.4, 16.1.3, 16.1.2, 16.1.1, 16.1.0
Leaked Credential Check with Brute Force Protection
The Leaked Credential Check feature is configured as part of the Advanced WAF
Brute Force Protection. A Brute Force Protection login page must be specified for Leaked
Credential Check to work. The information required to manually identify the required login
URL can be found by reviewing the HTML source code and snooping the HTML traffic generated
as a user logs into the site (e.g. keyboard F12). There is also the option to create login
pages automatically. For more information on configuring Brute Force Protection, see the F5
BIG-IP Application Security Manager Implementation Guide.