You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Leverage the ability of the WAF to inject headers into a request so that the Application is aware the request is from outside the country and can trigger alerts as required.
Acceptance Criteria:
WAF adds specific header to the request when the request is detected from outside of the accepted Geo Zone.
Application verifies header during the JWT callback to ensure that any authenticated action is done from within the accepted Geo Zone.
Application produces different alarms based on forbidden action:
Sign In at Cognito Level from outside Geo Zone
Sigin In Mfa level from outside Geo Zone
Authenticated action from outside Geo Zone.
The text was updated successfully, but these errors were encountered:
Could we also provide the email address of the user in the alarm? Addresses coming from Global Affairs Canada would have a legitimate reason for logging in, whereas email domains from TBS would not.
Leverage the ability of the WAF to inject headers into a request so that the Application is aware the request is from outside the country and can trigger alerts as required.
Acceptance Criteria:
The text was updated successfully, but these errors were encountered: