Last Modified: Jun 28, 2024
Affected Product(s):
BIG-IP AFM
Fixed In:
16.1.4, 15.1.9
Opened: Dec 30, 2022 Severity: 4-Minor
Users can create a shared object list to define countries to block traffic from. On searching a name, a list will be shown from which the user can choose and add it to the address list. There is a limit of only 8 entries in the drop-down menu to choose from. Some countries are not shown in this list due to the ordering of entries returned from the database.
As some countries are not available to select, they cannot be included in the Address List to block traffic.
DOS is enabled
Instead of the country (which is not available to select), all the regions within the country can be added to the block list. This is very cumbersome and error-prone as the list of regions should be known that are configurable in BIG IP.
The database query is modified such that the list of countries is ordered first followed by a list of countries with regions.