Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Matlu
Advisor

Blocking by HEADER LENGTH EXCEEDED

Hello,

We are having problems with the consumption of a web service.
The user can't access a web site, and the event log tells us that it is because of "authorization' header length exceeded maximum allowed".

HTTP.png

I have found a SK and reviewed it, but I would like to know if you would apply this SK as a recommendation, to "correct" our scenario (The SK focuses on another reason for blocking).

https://support.checkpoint.com/results/sk/sk171805

Maybe someone has dealt with a similar problem before, and can share their experience?

Regards.

0 Kudos
6 Replies
PhoneBoy
Admin
Admin

I believe this SK would also apply in your situation as the root cause is the same (the relevant header is greater than permitted).
Or you can create an exception for this Core protection for the relevant server.

0 Kudos
Matlu
Advisor

Sorry,

But what do you mean by "create an exception"?

Is this done from the INSPECTION SETTINGS options?

Any reference to check, regarding your recommendation, please?

Greetings,

0 Kudos
PhoneBoy
Admin
Admin

0 Kudos
the_rock
Legend
Legend

IPS exception, its under security policies and then custom policy. That was meant for @Matlu : - )

0 Kudos
Matlu
Advisor

Ok, I will check that option.

But this traffic that I have shown, is it related to "IPS"?

Because I don't see in the log, something that gives me an indication at a glance, that the IPS blade is the one who is blocking the traffic, haha. 😄

Maybe I'm "getting worse" with the view :'(

0 Kudos
the_rock
Legend
Legend

Sorry, my bad mate, been long day. Below, attached the photo.

Andy

 

Screenshot_1.png

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events