Forum Discussion
Bhanu_9561
Cirrus
You can also do it this way if you are only concerned about teh IP address. If you also need to look at the HTTP headers, you would require a more elaborate which coule be processor intensive as mentioned in the previous comment. iRuleIP_Addr_Block_List is a Data Group List which will contain the IP addresses/Networks that need to be blocked
when CLIENT_ACCEPTED{
if { [class match [IP::client_addr] equals $::IP_Addr_Block_List ] } {
TCP::close
} else {
return
}
}
Mathew_58740
Nov 07, 2013Nimbostratus
Thank you guys for the updates
our requirement is if IPAddress and the headers matches we have to block ,remaining traffic should be allowed.