Global InfraGlobal Infra Cloud
W A F

Get a policy

Returns a single policy by its ID.

GET
/api/v1/giservices/waf/policies/{id}

Authorization

AuthorizationBearer <token>

Okta Bearer token

In: header

Path Parameters

id*string

Asset unique identifier

Response Body

application/json

curl -X GET "https://example.com/api/v1/giservices/waf/policies/string"
{
  "id": "string",
  "name": "string",
  "description": "string",
  "service": "string",
  "attributes": {
    "listen_fqdn": "waf-myapp-acme.offnet.sbx.ginfra.net",
    "name": "my-service",
    "security_config": {
      "crs": {
        "allowed_http_versions": "HTTP/1.0 HTTP/1.1 HTTP/2 HTTP/2.0 HTTP/3 HTTP/3.0",
        "allowed_methods": "GET HEAD POST OPTIONS",
        "allowed_request_content_type": "|application/x-www-form-urlencoded| |multipart/form-data| |application/json| |text/plain|",
        "allowed_request_content_type_charset": "|utf-8| |iso-8859-1| |iso-8859-15| |windows-1252|",
        "critical_anomaly_score": 5,
        "error_anomaly_score": 4,
        "executing_paranoia_level": 1,
        "inbound_anomaly_threshold": 5,
        "notice_anomaly_score": 2,
        "outbound_anomaly_threshold": 4,
        "paranoia_level": 1,
        "restricted_extensions": ".bak/ .config/ .conf/ .dll/ .ini/ .log/ .sql/",
        "restricted_headers": "/proxy/ /lock-token/ /content-range/ /if/",
        "static_extensions": "/.jpg/ /.png/ /.css/ /.js/ /.svg/",
        "warning_anomaly_score": 3
      },
      "custom_rules": {
        "property1": [
          "string"
        ],
        "property2": [
          "string"
        ]
      },
      "modsecurity": {
        "modsec_rule_engine": "DetectionOnly",
        "ruleset_name": "owasp-crs",
        "ruleset_version": "4.25.0",
        "secrequestbodyinmemorylimit": 1048576,
        "secrequestbodylimit": 13107200,
        "secrequestbodynofileslimit": 1048576,
        "secrequestmaxnumargs": 255
      }
    },
    "target_fqdn": "myapp.services.acme.sbx.eu.ginfra.net",
    "target_port": 443,
    "target_ssl": true,
    "vhost_config": {
      "log_level": "warn",
      "proxy_pass_disablereuse": "Off",
      "proxy_pass_enablereuse": "On",
      "proxy_pass_keepalive": "On",
      "proxy_pass_retry": "2",
      "proxy_pass_timeout": "30",
      "request_headers": "set uniqueid %{UNIQUE_ID}e",
      "ssl_proxy_check_peer_cn": "On",
      "ssl_proxy_check_peer_name": "On",
      "ssl_proxy_verify": "none",
      "ssl_verify_client": "none"
    }
  },
  "platform": "string",
  "region": "string",
  "tenant": "string"
}
Empty
Empty
Empty