Imperva Cyber Community

communities_1.jpg
 View Only
Expand all | Collapse all

How to block Unwanted redirect from a domain to my site

  • 1.  How to block Unwanted redirect from a domain to my site

    Posted 06-07-2023 17:14

    There is a domain that points to my site and I want to block it.
    I have the IP of the site that refers to me and I want to block all incoming traffic from this domain.


    #On-PremisesWAF(formerlySecuresphere)

    ------------------------------
    Anand

    ------------------------------


  • 2.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-08-2023 04:58

    Hi Anand,

    You can use this kind of policy if you want to block access based on Source IP address. BlackListedIpAddresses is defined under Setup -> Global Objects -> Lookup Data (Scope Selection).



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 3.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-08-2023 13:56

    Hi Cezmi Cal,

    I have tried this option but its not blocking & is there any way to block the domain. Policy need to create for entire server group or particular applicatio?

    Thank you

    Anand



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------



  • 4.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 03:20

    Could you share policy details, "Apply To" tab details and lookup data set details?



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 5.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 07:18

    Hi Please find the below policy details

    Instead of ip can we block the domain 

    Thank you

    Anand



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------



  • 6.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 07:28

    You should add an entry to lookup data set by clicking on green + button and then type the IP address of the client that you want to block and then save the lookup data set.



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 7.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 07:44

    Hi,

    I have modified like below & you are talking about global object lookup data set correct ?



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------



  • 8.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 08:00

    Instead of ip & blocking domain is good option due to ip may change. Can you tell how to block domain ?



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------



  • 9.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 09:07

    What do you mean by domain? How do you obtain this information, by Referer Header of HTTP Request or another way?



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 10.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 09:06

    Correct, did it work with this configuration?



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 11.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 09:30

    Hi,

    No its  not working. I will explain my requirement clearly . Someone created redirection their website like xyz.com to my company website abc.com. if I'm trying to access  xyz.com then automatically redirected to abc.com. we could not find any header for this request and we are seeing  only end user  ip only in webserver and other logs. so I would like to block this redirection  either redirection ip or domain through WAF  but I'm not sure XYZ.com ip address is static or dynamic. Please let me know is there any way to block this ?

    Thank you 

    Anand



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------



  • 12.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 10:07

    If I understand correctly, xyz.com web server did not request the page on behalf of the user and only redirects the clients to your web server. If redirected Client request your web site without using any HTTP header indicating this redirection, each of these clients' requests is same as normal clients' abc.com request.



    ------------------------------
    Cezmi Cal
    technical support engineer
    Barikat Internet Guvenligi Bilisim Ticaret A.S.
    Ankara
    ------------------------------



  • 13.  RE: How to block Unwanted redirect from a domain to my site

    Posted 06-09-2023 10:27

    Yes correct, xyz domain directly forwarding the request to my domain as like normal normal clients.



    ------------------------------
    Saraswathi Anand Kotikalpudi
    Data Base Admin
    Charleston County
    North Charleston SC
    ------------------------------