/WAF_XSS_FunctionalExample

Example WAF Configuration for XSS Protection with example test process.

Apache License 2.0Apache-2.0

WAF-XSS-Functional-Example

Sample exercise to create a XSS Threat Protection profile, block a message with the enabled protection profile, and review the outcome of the protection operation.

Description

This artefact documents a sample exercise with test data for users to begin working with the Axway API Gateway embedded WAF. This will give you step by step instructions to set up a default Threat Protection Profile, assign it to a port, and ensure it is operational. This is not meant to be a best practice documentation for securing your environment with the WAF, simply a primer to allow for basic first time usage.

API Management Version ## API Management Version Compatibility

This artefact was successfully tested for the following versions:

  • V7.5.3

Usage

• Follow instructions to set up a Basic Threat Protection profile.
• Use the resulting artefacts to develop one or more security profiles that meet your enterprise needs.

Bug and Caveats

N/A

Contributing

Please read Contributing.md for details on our code of conduct, and the process for submitting pull requests to us.

Team

alt text Axway Team

Contact - Daniel Wille: dwille@axway.com

License

Apache License 2.0