Predefined Rules | Description |
High-Level-Security | Maximum URI length is 2048 characters. Action is set to deny. Severity is set to high. |
Medium-Level-Security | Maximum URI length is 2048 characters. Action is set to alert. Severity is set to medium. |
Alert-Only | Maximum URI length is 2048 characters. Action is set to alert. Severity is set to low. |
Settings | Guidelines |
Name | Configuration name. Valid characters are A-Z, a-z, 0-9, _, and -. No spaces. After you initially save the configuration, you cannot edit the name. |
Maximum URI Length | |
Length | Maximum characters in an HTTP request URI. The default is 2048. The valid range is 1-8192. |
Action | • Alert—Allow the traffic and log the event. • Deny—Drop the traffic, send a 403 Forbidden to the client, and log the event. The default is alert. |
Severity | • High—Log as high severity events. • Medium—Log as a medium severity events. • Low—Log as low severity events. The default is low. |
Request Method Rule | |
Method | Select one or more methods to match in the HTTP request line: • CONNECT • DELETE • GET • HEAD • OPTIONS • POST • PUT • TRACE • Others Note: The first 8 methods are described in RFC 2616. Others contains not commonly used HTTP methods defined by Web Distributed Authoring and Version (WebDAV) extensions. |
Action | • Alert—Allow the traffic and log the event. • Deny—Drop the traffic, send a 403 Forbidden to the client, and log the event. The default is alert. |
Severity | • High—Log as high severity events. • Medium—Log as a medium severity events. • Low—Log as low severity events. The default is low. |
Response Code Rule | |
Minimum Status Code / Maximum Status Code | Start/end of a range of status codes to match. You can specify codes 400 to 599. |
Action | • Alert—Allow the traffic and log the event. • Deny—Drop the traffic, send a 403 Forbidden to the client, and log the event. The default is alert. |
Severity | • High—Log as high severity events. • Medium—Log as a medium severity events. • Low—Log as low severity events. The default is low. |