Lab 1 - Malicious User Detection config

  1. Enabling Malicious User Detection is done at the HTTP Load Balancer level. In our example we will enable only Spam Sources and Anonymous Proxies
  1. Web App & API Protection -> Load Balancers -> HTTP Load Balancer -> Click the 3 dots under the arcadia-re-lb row -> Manage Configuration -> Edit Configuration -> Fill the bellow data

    Object Value
    Malicious User Detection Enable
    Malicious User Mitigation And Challenges Enable
    User Identifier Under the new User Identification Policy field choose Add Item
  2. Fill the bellow data -> Configure

    Object Value
    Name arcadia-user-identification
  3. Click Add Item -> Fill the bellow data -> Apply

    Object Value
    Identifier Type HTTP Header Name
    HTTP Header Name Authorization
  4. Click Add Item -> Fill the bellow data -> Apply -> Apply -> Continue -> Save and Exit

    Object Value
    Identifier Type Client IP Address