mirror of
https://github.com/owasp-modsecurity/ModSecurity.git
synced 2026-01-01 22:25:45 +03:00
Merging IIS and nginx code into M2 trunk.
This commit is contained in:
21
iis/ModSecurityIIS/ModSecurityIIS/README.TXT
Normal file
21
iis/ModSecurityIIS/ModSecurityIIS/README.TXT
Normal file
@@ -0,0 +1,21 @@
|
||||
Please note that installing ModSecurity for IIS requires IIS to be installed and enabled.
|
||||
|
||||
|
||||
After installing ModSecurity for IIS, the module will be running in all websites by default. To remove from a website add to web.config:
|
||||
|
||||
<modules>
|
||||
<remove name="ModSecurityIIS" />
|
||||
</modules>
|
||||
|
||||
To configure module in a website add to web.config:
|
||||
|
||||
<?xml version="1.0" encoding="UTF-8"?>
|
||||
<configuration>
|
||||
<system.webServer>
|
||||
<ModSecurity enabled="true" configFile="c:\inetpub\wwwroot\xss.conf" />
|
||||
</system.webServer>
|
||||
</configuration>
|
||||
|
||||
where configFile is standard ModSecurity config file.
|
||||
|
||||
Events from the module will show up in "Application" Windows log.
|
||||
Reference in New Issue
Block a user