CTX205847
2016-04-19
1970-01-01
NetScaler Application Firewall 11 blocks file attachment upload and the relaxation rule applied to XSS does not work.

Symptoms or Error

NetScaler Application Firewall 11 blocks file attachment upload and the relaxation rule applied to XSS does not work.


Solution

To resolve this issue, navigate to Application Firewall Profile Settings > HTML Settings > enable Exclude Uploaded Files from Security Checks.

Exclude Uploaded Files from Security Checks


Problem Cause

The code has completely changed between 10.1 and 11.0 with addition of streaming feature.

The Citrix Application Firewall now uses request side streaming, which results in a significant performance boost. Instead of buffering the entire request before processing it, the Application Firewall now looks at the incoming data, field by field, to inspect the input of each field for any configured security check violation (SQL, XSS, Field Consistency, Field Formats, and so on). As soon as the processing of the data for a field is completed, it is forwarded to the back-end while the evaluation continues for the remaining fields.


Additional Resources


Applicable Products


 

Join the conversation

Citrix Discussions

Open a case

Citrix Support

特别说明


本文来源为Citrix.com所有,翻译后版权归翻译者所有.如需转载请注明出处.

文档版本


.

广告招租


最新留言


.

广告招租


.