Forum Discussion

Arjun's avatar
Arjun
Icon for Nimbostratus rankNimbostratus
Jun 17, 2019

F5 ASM logs : Passwords appear in clear text

We have syslog servers configured. We recently observed that on ASM requests logs that are being forwarded to syslog servers, the password parameter value is given in clear text on the /owa/auth requests.

 

I observed that mostly the requests which get blocked have the values being displayed in clear text. while genuine traffic requests have the same values sanitized/encrypted.

 

The parameters mentioned are already given as sensitive parameters in the policy.

 

Need to know if this is normal behaviour for F5

 

Thanks,

Arjun

4 Replies