Forum Discussion
This might help : https://support.f5.com/kb/en-us/products/big-ip_asm/manuals/product/asm-implementations-11-5-0/37.html
Hi there, we have never seen a blocking page kicking in (even for critical events, there was just no need for alerting users about it). No extreme changes were made to the configuration. Is it supposed to show up for any policy violation if once turned on? What could be the reason for it not showing up, maybe it is never triggered? Is there more to this in terms of configuring more options?
Setting "Virus detected" is checked for all three options (Learn, Alarm and Block), and policy is indeed in Blocking mode (1st picture in the comment i made above). F5 Guide states that for "Virus detected" we should check only Alarm or Alarm and Block. Maybe this is the reason for not triggering blocking response page, although it would be a bit strange?
I don't have access to our customer's site over the weekend, but I could re-check this on Monday and report back here.