18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Creating Web or Secure Web Application Defenses<br />

Figure 6-4. Web/Secure<br />

Web: HTTP Request tab<br />

About the HTTP Request<br />

tab<br />

6-10 Configuring Application Defenses<br />

2. In the Match Parameter area, select the portion <strong>of</strong> the URL that will be<br />

filtered:<br />

Host—Select this option to filter on the URL host<br />

(http://hostname/path).<br />

Path—Select this option to filter on the URL path<br />

(http://hostname/path).<br />

All—Select this option to filter on the entire request<br />

(http://hostname/path).<br />

Configuring the Web/Secure Web HTTP Request tab<br />

To configure HTTP Request properties for a Web/Secure Web defense,<br />

click the HTTP Request tab. The following window appears.<br />

The HTTP Request tab allows you to configure header filtering for<br />

HTTP requests. This tab is only available if you selected Server or<br />

Combined in the Type field. Follow the steps below.<br />

Note: The fields in this tab will be disabled unless you select the HTTP Request check box<br />

on the Enforcements tab.<br />

1. Select the type <strong>of</strong> HTTP header filtering you want to allow or deny in the<br />

Selected HTTP Request Header Filter Types area. The following options<br />

are available:<br />

Note: The X-* filter type is a wildcard filter that will allow or deny all X-xxx request<br />

headers (commonly found in user-defined headers). If you create an Allow list and do<br />

not include the X-* filter type, most Web traffic will be denied.<br />

None—Select this option if you want to deselect all HTTP request<br />

header filter types in the list. (You can also deselect all <strong>of</strong> the types<br />

by clicking Deselect All.)

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!