Manual Chapter :
Configuring illegal parameter datatype violation
Applies To:
Show Versions
BIG-IP ASM
- 21.0.0, 17.1.3, 17.1.2, 17.1.1, 17.1.0, 17.0.0
Configuring illegal parameter datatype violation
Enable the
Illegal Parameter Data Type
violation, else the SSRF mitigation will not work as expected.- On the Main tab, click .
- ExpandParameters.
- CheckLearn,Alarm, andBlockfields for theIllegal Parameter data typeviolation.
- ClickSaveand thenApply Policy.
The violation is configured. ASM will block the request and raise a violation
illegal parameter data type
if any of the following condition is met:- If IP address as URI is received, when theHost Name Representationfield in set toDomain Name.
- If host name as URI is received, when theHost Name Representationfield in set toIP address.
- If an invalid host name or IP address is received.