Configuring JSON protection
JSON is a lightweight data-interchange format, and attackers may try to exploit sensitive information in JSON code to attack web servers. You can configure FortiWeb to validate JSON data contents in a JSON document. Configuring JSON protection can help to ensure that the content of requests containing JSON does not contain any potential attacks.
This section consists of instructions for the following steps:
- Importing JSON schema files. For details, see Importing JSON schema files.
- Creating JSON protection rules. For details, see Creating JSON protection rules.
- Creating JSON protection policies. For details, see Creating JSON protection policy.
- Selecting a JSON protection policy in a web protection profile. For details, see To select a JSON protection policy in a web protection profile.