AWS services or capabilities described in AWS Documentation may vary by region/location. Click Getting Started with Amazon AWS to see specific differences applicable to the China (Beijing) Region.
This is AWS WAF Classic documentation. For more information, see AWS
WAF Classic in the developer guide.
For the latest version of AWS WAF, use the AWS WAFV2 API and see the AWS
WAF Developer Guide. With the latest version, AWS WAF has a single set of endpoints
for regional and global use.
Specifies the part of a web request that you want AWS WAF to inspect for cross-site scripting attacks and, if you want AWS WAF to inspect a header, the name of the header.
Namespace: Amazon.WAF.Model
Assembly: AWSSDK.WAF.dll
Version: 3.x.y.z
public class XssMatchTuple
The XssMatchTuple type exposes the following members
Name | Description | |
---|---|---|
XssMatchTuple() |
Name | Type | Description | |
---|---|---|---|
FieldToMatch | Amazon.WAF.Model.FieldToMatch |
Gets and sets the property FieldToMatch. Specifies where in a web request to look for cross-site scripting attacks. |
|
TextTransformation | Amazon.WAF.TextTransformation |
Gets and sets the property TextTransformation.
Text transformations eliminate some of the unusual formatting that attackers use in
web requests in an effort to bypass AWS WAF. If you specify a transformation, AWS
WAF performs the transformation on You can only specify a single type of TextTransformation. CMD_LINE When you're concerned that attackers are injecting an operating system command line command and using unusual formatting to disguise some or all of the command, use this option to perform the following transformations:
COMPRESS_WHITE_SPACE Use this option to replace the following characters with a space character (decimal 32):
HTML_ENTITY_DECODE
Use this option to replace HTML-encoded characters with unencoded characters.
LOWERCASE Use this option to convert uppercase letters (A-Z) to lowercase (a-z). URL_DECODE Use this option to decode a URL-encoded value. NONE
Specify |
.NET Core App:
Supported in: 3.1
.NET Standard:
Supported in: 2.0
.NET Framework:
Supported in: 4.5, 4.0, 3.5