Reset Search
 

 

Article

5465 - If an attacker started using arbitrary hostnames when connecting would this allow the attacker to bypass the vADC Web Application Firewall?

« Go Back

Information

 
Last Modified Date6/11/2018 10:17 AM
Synopsis
This article answers a question regarding the use of arbitrary hostnames and the web application firewall
Problem or Goal

What if an attacker started using arbitrary hostnames when connecting (just putting random hostnames on the Host: HTTP header).  Will this allow the attacker to bypass the Stingray Application Firewall ?

Cause
Solution

For hosts that are unknown or not yet configured, there is an option to not allow traffic for the unknown hosts under Administration > Global Configuration > allow traffic for unknown hosts (not recommended). 

Each hostname should have an application assigned to it for protection/detection, which can be viewed under Application Control > Hosts

Related Links
Attachment 1 
Created ByCode Deployment

Feedback

 

Was this article helpful?


   

Feedback

Please tell us how we can make this article more useful.

Characters Remaining: 255