Web App & API Protection

F5 Distributed Cloud Web Application and API Protection delivers comprehensive application security anywhere with flexibility in architecture, routing, and policy enforcement across public/private clouds, on-premises data centers, and edge sites, with centralized visibility and management via a SaaS-based console.

Objective

This document provides instructions on how to create an Application Firewall, also known as a Web Application Firewall (WAF), and deploy it on a load balancer. The WAF consists of technology that will allow/block and requests/responses. To learn more about a WAF, see App Firewall

Using the instructions provided in these labs, create a WAF policy with default or custom attack types, enable threat campaigns, define bot protection settings, and attach that WAF to an HTTP load balancer to protect the app that load balancer serves. These instructions also include information on how to control responses from origin servers.

Resources