Skip to main content

F5 firewall

This Integration is part of the F5 firewall Pack.#

Use the F5 Firewall integration to manage your F5 firewall rules.

Configure F5 Firewall on Cortex XSOAR#

  1. Navigate to Settings > Integrations > Servers & Services.
  2. Search for F5 firewall.
  3. Click Add instance to create and configure a new integration instance.
ParameterDescriptionRequired
urlURLTrue
portPortTrue
credentialsCredentialsTrue
advancedLoginAdvanced login - set to true to authenticate via LDAP, AD etcFalse
insecureTrust any certificate (not secure)False
proxyUse system proxy settingsFalse
  1. Click Test to validate the URLs, token, and connection.

Commands#

You can execute these commands from the Cortex XSOAR CLI, as part of an automation, or in a playbook. After you successfully execute a command, a DBot message appears in the War Room with the command details.

Create a firewall policy#


Creates an F5 firewall policy.

Base Command#

f5-create-policy

Input#
Argument NameDescriptionRequired
Context Output#

There is no context output for this command.

Command Example#

Human Readable Output#

f5-create-rule#


Creates a rule in a specific policy

Base Command#

f5-create-rule

Input#
Argument NameDescriptionRequired
policy-nameThe policy name the rule will be associated withRequired
Context Output#

There is no context output for this command.

Command Example#

Human Readable Output#

List all rules for a policy#


Lists all the rules of a specific policy

Base Command#

f5-list-rules

Input#
Argument NameDescriptionRequired
policy-nameThe policy name that the rules displayed are associated with.Required
Context Output#

There is no context output for this command.

Command Example#

Modify the rule for a policy#


Modifies an F5 rule in a specific policy.

Base Command#

f5-modify-rule

Input#
Argument NameDescriptionRequired
policy-nameThe policy name the rule is associated with.Required
rule-nameThe rule name to modify.Required
Context Output#

There is no context output for this command.

Command Example#

Human Readable Output#

Delete a rule#


Delete an F5 rule.

Base Command#

f5-del-rule

Input#
Argument NameDescriptionRequired
policy-nameThe policy name the rule is associated with.Required
rule-nameThe name of the rule to delete.Required
Context Output#

There is no context output for this command.

Command Example#

Add a policy to a global policy#


Adds the specified policy to a global policy.

Base Command#

f5-modify-global-policy

Input#
Argument NameDescriptionRequired
enforcedPolicyThe new enforced policy to add to the global policy.Required
Context Output#

There is no context output for this command.

Command Example#

Human Readable Output#

Get a global policy#


Display global policy.

Base Command#

f5-show-global-policy

Input#

There are no input arguments for this command.

Context Output#

There is no context output for this command.

Command Example#

Delete a policy#


Deletes a policy.

Base Command#

f5-del-policy

Input#
Argument NameDescriptionRequired
policy-nameThe name of the policy to delete.Required
Context Output#

There is no context output for this command.

Command Example#

Human Readable Output#

Get a list of all user sessions#


Lists all the sessions with client IP for the given username.

Base Command#

f5-list-all-user-sessions

Input#
Argument NameDescriptionRequired
resource-ipClient IP address.Required
Context Output#

There is no context output for this command.

Command Example#