When you configure WAF on VIDZMO Application Gateway, Azure-managed OWASP rules are enabled by default, and a few of these rules can create some issues in uploading, transcoding, workflows, etc. while using the VIDIZMO Application. Below, we have discussed their cause, symptoms, and resolution. Click, to see: How to Manage WAF Rules.
Azure-managed OWASP Rules Set 2.2.9
1. Upload Failed Issue
Symptoms
If you try to upload media on the portal and it fails during the upload.
Cause
You will get below error
Resolution
To avoid upload stop working, disable/ turn off Inspect request body under Global Parameter.
2. Workflow Fails while Transcoding
Symptoms
After the media upload successfully, the workflow fails at 11.1 % on transcoding.
Cause
This issue is caused by the following error
Resolution
To avoid this issue, Disable/ Turn off Request Missing User-Agent and Accept header rules respectively.
Rule ID: 960009, 960015
3. Workflow fails on transcoding with 2 tries
Symptoms
Workflow fail at 100 % on transcoding with 2 tries
Cause
This issue is caused by the following error
Resolution
To avoid this issue Disable/ Turn off rule Request content type is not allowed by policy.
Rule ID: 960010
4. Thumbnail Capture failed
Symptoms
At the time of capturing thumbnail, it does not capture successfully and you get an error message.
Cause
This issue is caused by the following error.
Resolution
To avoid this issue, Disable/ Turn off rule Possible Remote File Inclusion (RFI) Attack: Off-Domain Reference/Link.
Rule ID: 950120
Azure-managed OWASP rules Rule Set 3.0
1. Upload Failed Issue
Symptoms
If you try to upload media on the portal and it fails during the upload.
Cause
You will get below error
Resolution
To avoid upload stop working, disable/ turn off Inspect request body under Global Parameter.
2. Transcode Failed Issue
Symptoms
Media uploads successfully but it does not transcode and you get transcoding failed error.
Cause
It is caused by the below error.
Resolution
To avoid abrupt transcoding fail error, disable/ turn off rule Request content type is not allowed by policy.
Rule ID: 920420
3. Thumbnail Capture failed
Symptoms
At the time of capturing thumbnail, it does not capture successfully and you get an error message.
Cause
You will get below error
Resolution
To help avoid thumbnail capture failed error, disable/ turn off rule Possible Remote File Inclusion (RFI) Attack: Off-Domain Reference/Link.
Rule ID: 931130