際際滷

際際滷Share a Scribd company logo
F5 BIG-IP
惡悋惡悋慍 惺愆 惠惘悋擧擧惆(惡悽愆4ASM)
Editor: Mohammad Najafikhah
Contact No : +989209201543
Contact E-mail : najafikhah.m@gmail.com
https://ir.linkedin.com/in/mohammad-najafikhah
BIG-IP Application Security
Management (ASM)
≒悋ASM悋 悋惠 忰惶 惡惺悋7悋 惡 惆惘 擧 擯惘惆 惘悋惘 悋愕惠悋惆 惘惆
WAF愆悋愕惆 惘悋 悋 悋 慍.
ASM  Overview
≒愕惠 惆惘Overview 惠惺惘 悋惡 擧 悽悋惶 惡惶惘惠 悋 悋 惡 惘惡愀 悋 惆悋惘Customize
惡悋愆惆 惆悋惘 惘悋 惆悋惘.悋愕悋愕 惡惘 惠悋 惘悋 悋 惆悋惘 悋Summary , Application (Traffic ,
Action Items) ,Protocol ,DoS擧惘惆 愆悋惆.悋 惆悋惆 悛慍悋愆擯悋 忰愀 惡惆 慍惘 惠惶惘 惆惘
惆悋惘惆 悴惆(.惆悋愆惠 悴惆 惠惶惘 惆惘 愆擯 悋 愆擧 擯惘)
ASM  Application Security
(Security Policies)
≒愕惠 惆惘Application Security:Security Policies擧惘惆 惆惘愕惠 悴惠 擧 惆悋惘惆 悽惠 悋 惡悽愆
Security Policies惠惡 惆惘Active Policies擧惘惆 惺悋 愃惘 惶惘惠 惆惘  惆悋惆 悋悴悋 惘悋 擧悋惘 悋 惠悋
Security Policies悋 惡 惡惺惆 惠惡 惡 拆惘悋 悋Inactive Policies擯惘 惠悋 惘悋 悴惆 悋 拆悋愕 惘惆
惠惡 惆惘 擧惘惆 惡惆Policy Groups惠惡 惆惘 惡惆 慍惘 惠惶惘 惆惘 擧 悋愀惘  Policies Summary
愆惆 惆惆 悋 拆悋愕 惷惺惠 悋慍 悋 悽悋惶.
ASM  Application
Security (Policy)
≒愕惠 惆惘Application Security : Policy惠惴悋惠 惠悋 悛 悋 惠惡 惆惘Security Policy
擧惘惆 惘悋愆 惘悋.惠惡 惆惘Response Pages悋惺 惆惘 擧 惶忰悋惠 惠悋Block惆惘悽悋愕惠 擧惘惆
擧惘惆 愕悋慍 愆悽惶  惠惴 惘悋 惆悋惘惆 悋愆 悛悋 惡 擧悋惘惡惘悋.惠惡 惆惘Audit惠悋 Log惘惡愀 擯慍悋惘愆悋惠  悋
惡Security Policy擧惘惆 愆悋惆 惘悋 悋.惠惡 惆惘History擧 悋愕惠 悛 惆惘 惠惴悋惠 惘悋愆 悋慍 惠悋惘悽
惡惘擯惘惆悋惆 惘悋 悛 惡 惠惴悋惠 惡 悋慍 惶惘惠 惆惘 惠悋.
ASM  Application
Security (Policy Building)
≒愕惠 惆惘Application Security : Policy building惠惡 惆惘Traffic Learning惠惘悋擧
惡 惘惡愀VIP惆惘 愆惆 惠惺 慍悋 惆惠  惠惘悋擧 慍悋 惡 悋惆擯惘 悋 擧 擯惘惆 悋惆 惘悋 愆惆 惆悋惆 惠悽惶惶
惠惴悋惠Security Policy惠惡 惆惘 愆惆 惘惡愀Enforcement ReadinessEntity
Type愆惆 惆惆  愕惠惆 愆惆 悋惺悋 惡惘悋 忰悋惷惘  悋惆 愆惆 惠悋 悛悋 悋惆擯惘 擧 悴惆 悋.惡 悛悽惘 惠惡
悋Learning and Blocking Settings悴惆 悋 惡 惘惡愀 惠惴悋惠 惠悋 惠悋 惠惡 悋 惆惘
悋愕悋愕 惡惘  惘悋愆 惘悋Application擧惘惆 愕悋慍 愆悽惶 惴惘 惘惆(.愕惠 惠惘ASM)
ASM  Application Security
(Vulnerability Assessments )
≒愕惠 惆惘Application Security : Vulnerability Assessments惠惡 惆惘
Vulnerabilities悛 擧惘惆 悋愕擧 惶惘惠 惆惘Application惆惘 擧 悋 悋惡慍悋惘 惡悋 惘惡愀
惠惡 悋 惆惘  擯惘惠 悋 悋惡慍悋惘 悛 悽惘悴 惠悋 惆悋惘惆 悴惆 慍惘 惠惶惘Import惠惡 惆惘  擧惘惆
Settings擧惆 悋惠悽悋惡 惡悋惆 惘悋 悋惆 惆悋惆 悋悴悋 惘悋 悋愕擧 悋 悛 惡悋 擧 悋惡慍悋惘 惺.
ASM  Application
Security (File Types)
≒惆惆 悋惠 悛 惡 悋 悋惺悋  悋惆擯惘 惆惘 擧 悋 悋悋 悋慍 擧File Types惡悋愆惆
愕惠 惆惘Application Security : File types惠惡 惆惘Allowed file types
惷惺惠 愆惘忰File types擧惘惆 惠惺惘 悛 惆惘 惆愕惠 惡惶惘惠 悋 惆惆 惘悋 惡悋愆惆 悴悋慍 擧.惠惡 惆惘
Disallowed File Types惠悋File Type愕悋悽惠 悛 惆惘 惆悋惘惆 惘悋 惺惡惘 悋悴悋慍 擧.
ASM  Application
Security (URLs)
≒擧惆擯惘惆惆 悋惠 悛 惡 悋 悋惺悋  悋惆擯惘 惆惘 擧 悋 悋悋 悋慍URLS惡悋愆惆
愕惠 惆惘Application Security : URLs惠惡 惆惘Allowed URLs惷惺惠 愆惘忰URLs悋悴悋慍 惘悋
悛悋 惡 惠悋   惆惆 愆悋 惘悋 惡悋愆惆 悛悋 惡 惆愕惠惘愕URL擧惘惆 悋惷悋.惠惡 惆惘Disallowed
URLs惠悋URL擧惘惆 悋惷悋 惘悋 惡悋愆惆 惆悋愆惠 悛 惡 惆愕惠惘愕 悽悋 擧 悋.惠惡 惆惘Character
Set惆惘 擧 擧悋惘擧惠惘悋 惡 惘惡愀 惠惴悋惠URL惆悋惆 悋悴悋 惠悋 惘悋 擧惘惆 悋愕惠悋惆 惠悋.
ASM  Application
Security (Parameters)
≒惆惆 悋惠 悛 惡 悋 悋惺悋  悋惆擯惘 惆惘 擧 悋 悋悋 悋慍 惆擯惘 擧Parameters惡悋愆惆
愕惠 惆惘Application Security : Parameters惆惘惠惡Parameters list惷惺惠 惠悋
Parameter惠悋  惡惡惆 惘悋 悋Parameter悋惷悋 惘悋 愆惆 惆悋惆 惠愆悽惶  悋惆擯惘 拆惘愕 惆惘  惆悋惘惆 悋慍 擧 悋
擧惆.惠惡 惆惘Extractions悋慍 惡惘悽Parameter惆惘 惆悋惘惆 惘悋 悽悋惶 惆悋惘  擧惆 惠愃惘 惆悋悋擧 惡惶惘惠 擧 悋
擧惆 悋惷悋 愕惠 悋.惠惡 惆惘Character sets擧惘惆 惘悋愆 惘悋 悋 拆悋惘悋惠惘 惆惘 悴惆 擧悋惘擧惠惘悋 惡 惘惡愀 惠惴悋惠.
ASM  Application Security
(Attack Signatures)
≒愕惠 惆惘Application Security : Attack Signatures惠悋 惠惡 悋 惆惘 惆悋惘惆 惡愆惠惘 惠惡 擧
Attack Signature悛 悽惶惶 悋Security Policy 惆惆 愆悋 愆悋 惡 惘悋 悋惆 擧惘惆 惆惘愕惠 擧
惠擧 惠擧 惠惴悋惠 惠悋惆 愕惠 悋 惆惘Attack signature  惆惆 惠愃惘 悋慍 悋愕悋愕 惡惘 惘悋 悋
擯悵悋惘惆 悋悽惠悋惘惠悋 惆惘 擧悋 惠惷忰悋惠 惡悋 惘悋 悛 惡 惘惡愀 悋愀悋惺悋惠.
ASM  Application Security
(Sessions and Logins)
≒愕惠 惆惘Application Security : Sessions and Logins惠惡 惆惘Login Pages List
悛 惆惘 擧 惶忰悋惠 惠悋Login悋 惡悽愆 惆惘 擧 擧惆 悋惘惆 惘悋 悋惠惆 悋惠悋Login Enforcement
Brute Force Attack惠惡 擯惘惆惆 悋愕惠悋惆Logout Pages List悋惠惆 悋惠悋  惡 慍.
惠惡 惆惘Login Enforcement悋擯 悋慍 惡惺惆 悽悋惶 悋惡惺 惡 惆愕惠惘愕 愕愀忰   悋惷悋 慍悋 惠悋
擧惆 悋惺悋 惘悋.惠惡Session Tracking惠愆悽惶 惡惘悋Session Hijacking惡悋 惘悋 惡愆惠惘 
悋APM惆悋惘惆 擧悋惘惡惘惆.
ASM  Application
Security (Headers)
≒愕惠 惆惘Application Security : Headers惠惡 惆惘Cookies list惠悋cookie擧 悋
擧惆 忰惆惆 惡悋 慍 惘悋 悋 惆愕惠惘愕  擧惆 悋悴悋惆 惆惘悛 悽悋惆 愆悋.惠惡 惆惘Character set惠悋
惆惘 悴惆 悋 擧悋惘擧惠惘 惡 惘惡愀 惠惴悋惠Header惘悋惆 悋惺悋 惘悋.惠惡 惆惘Host Names悋 惆悋 悋
悋 惆惘 悴惆 悋 惆悋 慍惘Secuirty Policy惠惡 惆惘 擧惘惆 惠惺惘 惠悋 慍 惘悋Methods慍
擧惆 悋惷悋 悋 惆惘 惘悋 惡悋愆惆 悴悋慍 擧 悋 惠惆 惠悋惆.
ASM  Application
Security (IP Addresses)
≒愕惠 惆惘Application Security : IP Addresses惠惡 惆惘IP Address Exceptions
悋慍 惡惘悽 惠悋IP惆惘 悋 悋悴悋惘 惠愆悽惶   悋 愕悋悽惠  悋惆擯惘 拆惘愕 惆惘 悽悋 擧 悋
悛 惠惘悋擧  愆惆 擯惘IP擧惘惆 惠惺惘 惘悋 悛 惠悋 愕惠 悋 惆惘 擧 擧惆 擧 惘悋 惡悽愆 悋 擧惆 擧 惘悋 悋.惆惘
惠惡IP Address Intelligence擧惘惆 惺悋 惘悋 擯 悋 惠悋.
惆悋惘惆 悋惆悋 惆悋愕惠悋 悋...
≒拆惠 拆悋惘 擧 惡惘悋  悋惺悋惆  忰惶 悋 惺惘 惡惘悋 惆悋惘 悋惆悋 慍 愀悋惡
10惠悋15愕悽 惡悋惡惘悋 惡悋愆惆 悋愕惠悋惆 悋惡 惡愆惠惘 惶忰5惡惘悋 惡愆惠惘 愆悋惆 悋
悽悋 悋惆悋 惘悋 惡忰惓 悋惆悋惆.
≒惡悋 惘悋惡愀 惆惘 愕悋F5 BIG-IP惠悋惆 
惡擯惘惆 惠悋愕  惡悋:
+989209201543
https://ir.linkedin.com/in/mohammad-najafikhah

More Related Content

F5 BIG-IP Tutorial Part 4 (ASM-Part1)

  • 1. F5 BIG-IP 惡悋惡悋慍 惺愆 惠惘悋擧擧惆(惡悽愆4ASM) Editor: Mohammad Najafikhah Contact No : +989209201543 Contact E-mail : najafikhah.m@gmail.com https://ir.linkedin.com/in/mohammad-najafikhah
  • 2. BIG-IP Application Security Management (ASM) ≒悋ASM悋 悋惠 忰惶 惡惺悋7悋 惡 惆惘 擧 擯惘惆 惘悋惘 悋愕惠悋惆 惘惆 WAF愆悋愕惆 惘悋 悋 悋 慍.
  • 3. ASM Overview ≒愕惠 惆惘Overview 惠惺惘 悋惡 擧 悽悋惶 惡惶惘惠 悋 悋 惡 惘惡愀 悋 惆悋惘Customize 惡悋愆惆 惆悋惘 惘悋 惆悋惘.悋愕悋愕 惡惘 惠悋 惘悋 悋 惆悋惘 悋Summary , Application (Traffic , Action Items) ,Protocol ,DoS擧惘惆 愆悋惆.悋 惆悋惆 悛慍悋愆擯悋 忰愀 惡惆 慍惘 惠惶惘 惆惘 惆悋惘惆 悴惆(.惆悋愆惠 悴惆 惠惶惘 惆惘 愆擯 悋 愆擧 擯惘)
  • 4. ASM Application Security (Security Policies) ≒愕惠 惆惘Application Security:Security Policies擧惘惆 惆惘愕惠 悴惠 擧 惆悋惘惆 悽惠 悋 惡悽愆 Security Policies惠惡 惆惘Active Policies擧惘惆 惺悋 愃惘 惶惘惠 惆惘 惆悋惆 悋悴悋 惘悋 擧悋惘 悋 惠悋 Security Policies悋 惡 惡惺惆 惠惡 惡 拆惘悋 悋Inactive Policies擯惘 惠悋 惘悋 悴惆 悋 拆悋愕 惘惆 惠惡 惆惘 擧惘惆 惡惆Policy Groups惠惡 惆惘 惡惆 慍惘 惠惶惘 惆惘 擧 悋愀惘 Policies Summary 愆惆 惆惆 悋 拆悋愕 惷惺惠 悋慍 悋 悽悋惶.
  • 5. ASM Application Security (Policy) ≒愕惠 惆惘Application Security : Policy惠惴悋惠 惠悋 悛 悋 惠惡 惆惘Security Policy 擧惘惆 惘悋愆 惘悋.惠惡 惆惘Response Pages悋惺 惆惘 擧 惶忰悋惠 惠悋Block惆惘悽悋愕惠 擧惘惆 擧惘惆 愕悋慍 愆悽惶 惠惴 惘悋 惆悋惘惆 悋愆 悛悋 惡 擧悋惘惡惘悋.惠惡 惆惘Audit惠悋 Log惘惡愀 擯慍悋惘愆悋惠 悋 惡Security Policy擧惘惆 愆悋惆 惘悋 悋.惠惡 惆惘History擧 悋愕惠 悛 惆惘 惠惴悋惠 惘悋愆 悋慍 惠悋惘悽 惡惘擯惘惆悋惆 惘悋 悛 惡 惠惴悋惠 惡 悋慍 惶惘惠 惆惘 惠悋.
  • 6. ASM Application Security (Policy Building) ≒愕惠 惆惘Application Security : Policy building惠惡 惆惘Traffic Learning惠惘悋擧 惡 惘惡愀VIP惆惘 愆惆 惠惺 慍悋 惆惠 惠惘悋擧 慍悋 惡 悋惆擯惘 悋 擧 擯惘惆 悋惆 惘悋 愆惆 惆悋惆 惠悽惶惶 惠惴悋惠Security Policy惠惡 惆惘 愆惆 惘惡愀Enforcement ReadinessEntity Type愆惆 惆惆 愕惠惆 愆惆 悋惺悋 惡惘悋 忰悋惷惘 悋惆 愆惆 惠悋 悛悋 悋惆擯惘 擧 悴惆 悋.惡 悛悽惘 惠惡 悋Learning and Blocking Settings悴惆 悋 惡 惘惡愀 惠惴悋惠 惠悋 惠悋 惠惡 悋 惆惘 悋愕悋愕 惡惘 惘悋愆 惘悋Application擧惘惆 愕悋慍 愆悽惶 惴惘 惘惆(.愕惠 惠惘ASM)
  • 7. ASM Application Security (Vulnerability Assessments ) ≒愕惠 惆惘Application Security : Vulnerability Assessments惠惡 惆惘 Vulnerabilities悛 擧惘惆 悋愕擧 惶惘惠 惆惘Application惆惘 擧 悋 悋惡慍悋惘 惡悋 惘惡愀 惠惡 悋 惆惘 擯惘惠 悋 悋惡慍悋惘 悛 悽惘悴 惠悋 惆悋惘惆 悴惆 慍惘 惠惶惘Import惠惡 惆惘 擧惘惆 Settings擧惆 悋惠悽悋惡 惡悋惆 惘悋 悋惆 惆悋惆 悋悴悋 惘悋 悋愕擧 悋 悛 惡悋 擧 悋惡慍悋惘 惺.
  • 8. ASM Application Security (File Types) ≒惆惆 悋惠 悛 惡 悋 悋惺悋 悋惆擯惘 惆惘 擧 悋 悋悋 悋慍 擧File Types惡悋愆惆 愕惠 惆惘Application Security : File types惠惡 惆惘Allowed file types 惷惺惠 愆惘忰File types擧惘惆 惠惺惘 悛 惆惘 惆愕惠 惡惶惘惠 悋 惆惆 惘悋 惡悋愆惆 悴悋慍 擧.惠惡 惆惘 Disallowed File Types惠悋File Type愕悋悽惠 悛 惆惘 惆悋惘惆 惘悋 惺惡惘 悋悴悋慍 擧.
  • 9. ASM Application Security (URLs) ≒擧惆擯惘惆惆 悋惠 悛 惡 悋 悋惺悋 悋惆擯惘 惆惘 擧 悋 悋悋 悋慍URLS惡悋愆惆 愕惠 惆惘Application Security : URLs惠惡 惆惘Allowed URLs惷惺惠 愆惘忰URLs悋悴悋慍 惘悋 悛悋 惡 惠悋 惆惆 愆悋 惘悋 惡悋愆惆 悛悋 惡 惆愕惠惘愕URL擧惘惆 悋惷悋.惠惡 惆惘Disallowed URLs惠悋URL擧惘惆 悋惷悋 惘悋 惡悋愆惆 惆悋愆惠 悛 惡 惆愕惠惘愕 悽悋 擧 悋.惠惡 惆惘Character Set惆惘 擧 擧悋惘擧惠惘悋 惡 惘惡愀 惠惴悋惠URL惆悋惆 悋悴悋 惠悋 惘悋 擧惘惆 悋愕惠悋惆 惠悋.
  • 10. ASM Application Security (Parameters) ≒惆惆 悋惠 悛 惡 悋 悋惺悋 悋惆擯惘 惆惘 擧 悋 悋悋 悋慍 惆擯惘 擧Parameters惡悋愆惆 愕惠 惆惘Application Security : Parameters惆惘惠惡Parameters list惷惺惠 惠悋 Parameter惠悋 惡惡惆 惘悋 悋Parameter悋惷悋 惘悋 愆惆 惆悋惆 惠愆悽惶 悋惆擯惘 拆惘愕 惆惘 惆悋惘惆 悋慍 擧 悋 擧惆.惠惡 惆惘Extractions悋慍 惡惘悽Parameter惆惘 惆悋惘惆 惘悋 悽悋惶 惆悋惘 擧惆 惠愃惘 惆悋悋擧 惡惶惘惠 擧 悋 擧惆 悋惷悋 愕惠 悋.惠惡 惆惘Character sets擧惘惆 惘悋愆 惘悋 悋 拆悋惘悋惠惘 惆惘 悴惆 擧悋惘擧惠惘悋 惡 惘惡愀 惠惴悋惠.
  • 11. ASM Application Security (Attack Signatures) ≒愕惠 惆惘Application Security : Attack Signatures惠悋 惠惡 悋 惆惘 惆悋惘惆 惡愆惠惘 惠惡 擧 Attack Signature悛 悽惶惶 悋Security Policy 惆惆 愆悋 愆悋 惡 惘悋 悋惆 擧惘惆 惆惘愕惠 擧 惠擧 惠擧 惠惴悋惠 惠悋惆 愕惠 悋 惆惘Attack signature 惆惆 惠愃惘 悋慍 悋愕悋愕 惡惘 惘悋 悋 擯悵悋惘惆 悋悽惠悋惘惠悋 惆惘 擧悋 惠惷忰悋惠 惡悋 惘悋 悛 惡 惘惡愀 悋愀悋惺悋惠.
  • 12. ASM Application Security (Sessions and Logins) ≒愕惠 惆惘Application Security : Sessions and Logins惠惡 惆惘Login Pages List 悛 惆惘 擧 惶忰悋惠 惠悋Login悋 惡悽愆 惆惘 擧 擧惆 悋惘惆 惘悋 悋惠惆 悋惠悋Login Enforcement Brute Force Attack惠惡 擯惘惆惆 悋愕惠悋惆Logout Pages List悋惠惆 悋惠悋 惡 慍. 惠惡 惆惘Login Enforcement悋擯 悋慍 惡惺惆 悽悋惶 悋惡惺 惡 惆愕惠惘愕 愕愀忰 悋惷悋 慍悋 惠悋 擧惆 悋惺悋 惘悋.惠惡Session Tracking惠愆悽惶 惡惘悋Session Hijacking惡悋 惘悋 惡愆惠惘 悋APM惆悋惘惆 擧悋惘惡惘惆.
  • 13. ASM Application Security (Headers) ≒愕惠 惆惘Application Security : Headers惠惡 惆惘Cookies list惠悋cookie擧 悋 擧惆 忰惆惆 惡悋 慍 惘悋 悋 惆愕惠惘愕 擧惆 悋悴悋惆 惆惘悛 悽悋惆 愆悋.惠惡 惆惘Character set惠悋 惆惘 悴惆 悋 擧悋惘擧惠惘 惡 惘惡愀 惠惴悋惠Header惘悋惆 悋惺悋 惘悋.惠惡 惆惘Host Names悋 惆悋 悋 悋 惆惘 悴惆 悋 惆悋 慍惘Secuirty Policy惠惡 惆惘 擧惘惆 惠惺惘 惠悋 慍 惘悋Methods慍 擧惆 悋惷悋 悋 惆惘 惘悋 惡悋愆惆 悴悋慍 擧 悋 惠惆 惠悋惆.
  • 14. ASM Application Security (IP Addresses) ≒愕惠 惆惘Application Security : IP Addresses惠惡 惆惘IP Address Exceptions 悋慍 惡惘悽 惠悋IP惆惘 悋 悋悴悋惘 惠愆悽惶 悋 愕悋悽惠 悋惆擯惘 拆惘愕 惆惘 悽悋 擧 悋 悛 惠惘悋擧 愆惆 擯惘IP擧惘惆 惠惺惘 惘悋 悛 惠悋 愕惠 悋 惆惘 擧 擧惆 擧 惘悋 惡悽愆 悋 擧惆 擧 惘悋 悋.惆惘 惠惡IP Address Intelligence擧惘惆 惺悋 惘悋 擯 悋 惠悋.
  • 15. 惆悋惘惆 悋惆悋 惆悋愕惠悋 悋... ≒拆惠 拆悋惘 擧 惡惘悋 悋惺悋惆 忰惶 悋 惺惘 惡惘悋 惆悋惘 悋惆悋 慍 愀悋惡 10惠悋15愕悽 惡悋惡惘悋 惡悋愆惆 悋愕惠悋惆 悋惡 惡愆惠惘 惶忰5惡惘悋 惡愆惠惘 愆悋惆 悋 悽悋 悋惆悋 惘悋 惡忰惓 悋惆悋惆. ≒惡悋 惘悋惡愀 惆惘 愕悋F5 BIG-IP惠悋惆 惡擯惘惆 惠悋愕 惡悋: +989209201543 https://ir.linkedin.com/in/mohammad-najafikhah