Haltdos User Guide
  • Introduction
  • Customer Portal
  • hdPlatform
    • Stacks
      • Stack Status
      • Events
      • Alarms
      • Analytics
      • Instance
        • Operational Settings
        • High Availiability
        • VRRP
        • Network Settings
          • Ethernet
          • Virtual LAN
          • Link Bonds
        • Routing
          • BGP
          • OSFP
          • RIP
        • Integration
          • SNMP
          • NTP
        • DHCP Settings
        • Virtual Machines
      • Integrations
        • Syslog
        • API Tokens
        • Webhooks
        • Threat Feeds
      • Resource Content
        • Cache Pools
        • Encryption Key
        • SSL Certificates
          • Lets Encrypt Certificates
        • Web pages
        • Client Certificates
        • Revocation List
        • Custom Scripts
      • Stack Settings
        • Backup Policy
        • AAA Policy
        • Reports
        • Scheduler
        • Dashboards
        • Config Synchronization
    • Status Page
    • Updates
    • E-Mail Integration (SMTP)
    • OS Templates
    • Virtualization
    • User Management
      • Access Control
      • Active Directory
      • Password Policy
      • Admin Users
    • User Profile
      • Change Password
      • Reset Password
    • Logs & Diagnostics
  • Deployment
    • Link Load Balancers (LLB)
      • Scenario 1
      • Scenario 2
      • Scenario 3
      • Scenario 4
    • Application Delivery Controller
      • Scenario 1
      • Scenario 2
      • Scenario 3
  • Solutions
    • Web Application Firewall (WAF)
      • Machine Learning
      • Listener
        • Settings
        • Profiles
          • Settings
          • Geo Filtering
          • Antivirus
          • Bot Protection
          • Policy
            • Web Policy
            • JSON Policy
            • XML Policy
          • Rules
            • Error Rules
            • Form Rules
            • Firewall Rules
            • Rate Limit Rules
            • Whitelist Rules
            • Response Rules
            • Behavior Rules
            • Tamper Rules
            • Correlation Rules
            • Deception Rules
            • Script Rules
            • Log Rules
          • Signatures
        • SSL Settings
        • Performance
          • Caching
          • Compression
          • RUM Metric
        • Server Groups
          • Servers
          • Load Balancing
        • Monitors
        • Rules
          • Error Rules
          • Header Rules
          • Redirection Rules
          • Variable Rules
          • Upstream Rules
        • Variables
        • Advanced Bot
        • Rule Staging
        • Virtual Patching
        • Learning
        • Auto-Profiling
      • User Groups
      • Incidents
      • Tools
        • Global Whitelist
        • FP Finder
        • Match Finder
    • Web Security Scanner
      • Scan Profiles
    • Anti-DDoS
      • Profile
        • General Settings
        • Detection
        • Connections
          • TCP Settings
          • TCP Shield
          • Aggressive Aging
        • Application
          • HTTP
          • DNS
          • Miscellaneous
        • Traffic shaping
        • Network Rules
        • Signature
      • Geo Inspection
      • Bot Protection
      • SSL Offloading
      • Cloud Signaling
      • Incidents
      • Advance Settings
        • Pattern Score
        • Top talkers
      • Cluster
    • Link Load Balancer (LLB)
      • LLB Settings
      • Interface Groups
      • Monitors
        • Monitor Scripts
      • Rules
        • Load Balancing
        • Source NAT
        • Destination NAT
        • Fixed Routing
        • Scenario 5
        • Policy Routing
        • Traffic Shaper / QoS
    • Application Delivery Controller (ADC/SLB)
      • Listeners
        • Listener Settings
        • SSL Settings
        • Geo Filtering
        • Server Groups
          • Servers
          • Load Balancing
          • SNMP
        • Monitors
        • Performance
        • Rules
          • Error Rules
          • Header Rules
          • Redirection Rule
          • Policy Rules
          • Upstream Rule
          • Rate Limit Rules
        • Action Scripts
      • Incidents
    • SSL VPN
      • Settings
        • General Settings
        • Networking
        • Security
      • VPN Users
      • VPN Group
    • Global Server Load Balancer (GSLB)
      • Listener
        • Operational
        • Geo Filtering
        • Zones
        • Monitors
        • Rules
      • Domain Filters
      • Sites
  • Knowledgebase
    • Platform
      • KB: 00003001
      • KB: 00003002
      • KB: 00003003
      • KB: 00003004
      • KB: 00003005
      • KB: 00003006
      • KB: 00003007
      • KB: 00003008
      • KB: 00003009
      • KB: 00003010
      • KB: 00003011
    • Web Application Firewall (WAF)
      • KB: 00001001
      • KB: 00001002
      • KB: 00001003
      • KB: 00001004
      • KB: 00001005
      • KB: 00001006
      • KB: 00001007
      • KB: 00001008
      • KB: 00001009
      • KB: 00001010
      • KB: 00001011
      • KB: 00001012
      • KB: 00001013
      • KB: 00001014
      • KB: 00001015
      • KB: 00001016
      • KB: 00001017
      • KB: 00001018
      • KB: 00001019
      • KB: 00001020
      • KB: 00001021
      • KB: 00001022
      • KB: 00001023
      • KB: 00001024
      • KB: 00001025
      • KB: 00001026
      • KB: 00001027
      • KB: 00001028
      • KB: 00001029
      • KB: 00001030
      • KB: 00001031
      • KB: 00001032
      • KB: 00001033
      • KB: 10001034
      • KB: 00001035
      • KB: 00001036
      • KB: 00001037
      • KB: 00001038
      • KB: 00001039
      • KB: 00001040
      • KB: 00001041
      • KB: 00001042
      • KB: 00001043
      • KB: 00001044
      • KB: 00001045
      • KB: 00001046
      • KB: 00001047
      • KB: 00001048
      • KB: 00001049
      • KB: 00001050
      • KB: 00001051
      • KB: 00001052
      • KB: 00001053
      • KB: 00001054
      • KB: 00001055
      • KB: 00001056
      • KB: 00001057
      • KB: 00001058
      • KB: 00001059
      • KB: 00001060
      • KB: 00001061
      • KB: 00001062
      • KB: 00001063
      • KB: 00001064
      • KB: 00001065
    • Application Delivery Controller
      • KB: 00002000
      • KB: 00002001
      • KB: 00002002
      • KB: 00002003
      • KB: 00002004
      • KB: 00002005
      • KB: 00002006
      • KB: 00002007
      • KB: 00002008
      • KB: 00002009
      • KB: 00002010
      • KB: 00002011
      • KB: 00002012
      • KB: 00002013
      • KB: 00002014
      • KB: 00002015
      • KB: 00002016
      • KB: 00002017
      • KB: 00002018
      • KB: 00002019
      • KB: 00002020
      • KB: 00002021
      • KB: 00002022
    • Global Server Load Balancing
      • KB: 00004001
      • KB: 00004002
      • KB: 00004003
      • KB: 00004004
      • KB: 00004005
      • KB: 00004006
      • KB: 00004007
      • KB: 00004008
      • KB: 00004009
  • Troubeshooting
    • Case: 00009001
    • Case: 00009002
    • Case: 00009003
    • Case: 00009004
    • Case: 00009005
    • Case: 00009006
    • Case: 00009007
  • Glossary
Powered by GitBook
On this page
  • Overview
  • Description
  • Description

Was this helpful?

  1. Solutions
  2. Web Application Firewall (WAF)
  3. Listener

Settings

Configure operational settings of Listeners.

PreviousListenerNextProfiles

Last updated 2 years ago

Was this helpful?

Overview

Users are allowed to configure many operational settings for the .

How to Use:

1. Go to WAF > Listeners > Operational Settings

2. Configure your settings

3. Click Save

PARAMETERS
ACCEPTED VALUES
DEFAULT

Enable IPv6

Enables IPv6

Accepted values: Boolean

True

Enable HTTP 2.0

Enables Http 2.0

Accepted values: Boolean

False

Web Socket Enabled

Enable websocket support

False

Client Keep-Alive Timeout

Specify timeout of keep-alive connections with clients. Set 0 to disable

Accepted values: Integer

0

Client Body Timeout

Specify a timeout for receiving the request body.

Accepted values: Integer

300

Header Timeout

Specify the header timeout in seconds.

Accepted values: Integer

300

Enable Static Extension Logging

Specify whether to log requests for static extension.

Accepted values: Boolean

False

Static Extensions

Specify the list of allowed static extensions that don't require security validation.

png, gif, ico, etc.

Maximum HTTP Body size

Specify the maximum allowed HTTP body size from single client IP.

Accepted values: Integer

10485760

Maximum HTTP Header size

Specify the maximum allowed HTTP header size from a single client IP.

Accepted values: Integer

4096

Host Header

Specify the host header.

Accepted values: String

Blank

Client IP Location

Specify the location of the client IP.

Accepted values: DropDown

SRC IP

Enable Error Handling

Specify whether to enable error handling by firewall.

Accepted values: Boolean

True

Proxy Buffers

Specify the number of buffers used for reading a response from the server for a single connection.

Accepted values: Integer

8

Proxy Buffer Size

Specify the size of the buffer used for reading the first part of the server response.

Accepted values: Integer

8

Add Port

Helps you to add HTTP/S ports for Advance Settings.

Accepted values: Integer

Blank

Description

SETTINGS
ACCEPTED VALUES
DEFAULT

Enable IPv6

Enables IPv6

Accepted values: Boolean

True

Enable HTTP 2.0

Enables Http 2.0

Accepted values: Boolean

False

Enable AMF

Enables AMF

Boolean

False

Enable GWT

Enables GWT

Boolean

False

Web Socket Enabled

Enable websocket support

False

Client Keep-Alive Timeout

Specify timeout of keep-alive connections with clients. Set 0 to disable

Accepted values: Integer

0

Client Body Timeout

Specify a timeout for receiving the request body. Accepted values: Integer

300

Header Timeout

Specify the header timeout in seconds.

Accepted values: Integer

300

Enable Static Extension Logging

Specify whether to log requests for static extension.

Accepted values: Boolean

False

Static Extensions

Specify the list of allowed static extensions that don't require security validation.

png, gif, ico, etc.

Maximum HTTP Body size

Specify the maximum allowed HTTP body size from single client IP.

Accepted values: Integer

10485760

Maximum HTTP Header size

Specify the maximum allowed HTTP header size from a single client IP.

Accepted values: Integer

4096

Host Header

Specify the host header.

Accepted values: String

Blank

Client IP Location

Specify the location of the client IP.

Accepted values: DropDown

SRC IP

Enable Error Handling

Specify whether to enable error handling by firewall.

Accepted values: Boolean

True

Proxy Buffers

Specify the number of buffers used for reading a response from the server for a single connection.

Accepted values: Integer

8

Proxy Buffer Size

Specify the size of the buffer used for reading the first part of the server response.

Accepted values: Integer

8

Add Port

Helps you to add HTTP/S ports for Advance Settings.

Accepted values: Integer

Blank

Description

Enable IPv6:

This option allows user to enable traffic over IPv6 and applicable in the case of all service types. Internet Protocol version 6 is the most recent version of the Internet Protocol that allows communication to take place over the network.

Enable HTTP 2.0:

Specify if the WAF should allow HTTP 2.0 requests. By default, it supports other versions like HTTP 1.1

This option allows user to specify whether the solution supports HTTP 2.0 request. HTTP/2 aims to be a faster, more efficient protocol than HTTP. By default, it supports other versions like HTTP 1.1

Enable AMF

Users can specify WAF should use AMF.

Enable GWT

Users can enable or disable GWT.

Web-socket Enabled

This option allows user to enable web-socket support for servers or server group. It is a communication, an upgraded, quick, and seamless protocol to use when one needs to establish constant client-server communication over a single TCP connection.

Enable Logging

This option allows user to enable access logs in the case of service type HTTP & TCP.

Enable Signature Validations

This option allows user to specify whether to enable signature validations.

Enable Static Extension Logging

This option allows user to specify whether to do log requests for static extension.

Enable Error Handling

This option allows user to specify whether to enable error handling by firewall.

Connection Pool Size

This option allows user to specify the connection pool size with upstream.

Forwarding Port

This option allows user to specify the forwarding port.

Client Keep-Alive Timeout

This option specify the timeout of keep-alive connections of clients. Set 0 to disable.

Upstream Keep-Alive Timeout

This option specify timeout of keep-alive connections of upstream. Set 0 to disable.

Max Requests per Connection

This option specify maximum allowed requests per keep-alive connection.

Upstream Connection Timeout

This option specify connection timeout of origin servers.

Upstream Send Timeout

This option specify send request timeout of origin server.

Upstream Read Timeout

This option specify read request timeout with origin servers.

Client Body Timeout

This option specify the timeout for receiving the request body.

Header Timeout

This option specify the header timeout. By default, it is 100 seconds.

Static Extensions

This option specify the list of allowed static extensions that don't require security validation.

Maximum HTTP Body Size

This field specifies the maximum allowed HTTP body size (in bytes) from a single client IP. If the size exceeds, then the request gets dropped. By default, it is 10485760 bytes.

Note: In the case of HTTP/0.9, no headers get transmitted.

Maximum HTTP Header Size

This field specifies the maximum allowed HTTP Header size (in bytes) from a single client IP. If size exceeds, then the request gets dropped. By default, it is 4096 bytes.

It comprises types, capabilities, and versions of the browser that makes the request. These elements help in returning compatible data.

Proxy Buffers

This option specify the number of buffers used for reading a response from the server for a single connection.

Proxy Buffer Size

This option specify the size of the buffer used for reading the first part of the server response. Proper value can cause improper utilization of proxy buffer optimally for each request.

Log Format

This option specify the request log format.

Client IP Location

This option specify the location of the client IP.

Host Header

This option specify the host header allowed by the backend, if it's different from the listener sub-domain. This allows the incoming request to alter the host header in each request and transmit it to the backend server.

Server Aliases

This option specify aliases means familiar name for the listener.

Virtual IPs

This option specify assigned virtual IPs for accepting traffic.

Add Port

This option helps you to add HTTP/S ports for Advance Settings. Here you can unique port either HTTP or HTTPS enabled configuration without changing backend server port.

Note: Proxy Buffer and Proxy Buffer are sensitive configurations that can affect applications that should be configured with prior knowledge.

Listeners
Operational Settings for Listener
Listener Settings
Listener Settings
Listener Settings
Listener Settings