Forum Discussion
6 Replies
Sort By
- SanjayPNacreous
You can attach iRule to HTTP VIP to reject the traffic coming from the scanning tool.
Using data-group
when CLIENT_ACCEPTED { if { [class match [IP::client_addr] equals scanner_ip] } { reject } else { return } }
Using IP-address within the iRule
when CLIENT_ACCEPTED { if { [IP::addr [IP::client_addr] equals <scannerip> ] } { reject } else { return } }
- joyride_usAltostratus
You can redirect the request from port 80 to port 443.
( HTTP::redirect ...)
- EgrebeldNimbostratus
This way do not prevent the F5 to answer on port scanning
- joyride_usAltostratus
Sorry. Wrong question.