Protect Against Code Injection assertion
search cancel

Protect Against Code Injection assertion

book

Article ID: 138265

calendar_today

Updated On:

Products

CA API Gateway API SECURITY CA API Gateway Precision API Monitoring Module for API Gateway (Layer 7) CA API Gateway Enterprise Service Manager (Layer 7) STARTER PACK-7 CA Microgateway

Issue/Introduction

Is it possible to know the list of prohibited special characters of this assertion : "Protect Against Code Injection assertion" ?

Environment

Release : 9.3

Component : API GTW ENTERPRISE MANAGER

Cause

For security reasons, we cannot publish this information in the documentation.

Resolution

For security reasons, we cannot publish this information in the documentation.

But this information is available in the assertion. 


Please follow the below mentioned steps to find out what characters are blocked for each type of protection:

1) Open Code Injection Protection properties panel.

2) Hover over each type of Available Protections. When you hover over an Available Protection, a description is shown below in the description Panel showing the exact characters/tags which will be blocked by that protection.