22 Commits

Author SHA1 Message Date
Ervin Hegedus
63d5d92565
chore: add 'log' action to rule 200005 2024-10-02 17:11:01 +02:00
Martin Vierula
bb372850ac
Adjust parser activation rules in modsecurity.conf-recommended 2022-09-07 11:43:54 -07:00
Martin Vierula
733427197e
Set SecStatusEngine Off in modsecurity.conf-recommended 2022-04-19 10:07:36 -07:00
Martin Vierula
60be05914c
Add SecRequestBodyJsonDepthLimit to modsecurity.conf-recommended 2021-12-21 06:30:28 -08:00
martinhsv
8b2c869279
Add commented-out sample rule to engage JSON Processor for more subtypes 2021-07-12 09:29:38 -07:00
Padraig Doran
ec71102197
Fix spelling
"reachers" should be "reaches"
2018-05-10 18:35:25 -03:00
Chaim Sanders
5e4e2af7a6
add support for soap+xml
As was talked about by @emphazer in https://github.com/SpiderLabs/owasp-modsecurity-crs/pull/721, RFC 3902 adds support for the application/soap+xml header used by SOAP 1.2.
2017-04-06 09:34:54 -03:00
Chaim Sanders
1068da464c Updated recommended conf to enter XML processor when content-type is application/xml 2016-01-11 10:43:05 -05:00
Ulisses Albuquerque
e90874a694 Added sample JSON content-type rule 2014-03-31 16:22:09 -07:00
Felipe Zimmerle
a6d93441c1 Places StatusEngine to be Off by default
StatusEngine is now marked as Off by default. This patch also adds the
SecStatusEngine directive to our recommend configuration file.
2014-03-31 07:14:55 -07:00
Torben Hansen
ab9aede2e5 Update status code for rule 200002
Removed the non standard compliant HTTP response status code 44 and replaced it with a 400 response status code. Refs #665
2014-02-25 15:44:40 +01:00
Felipe Zimmerle
537b85edf8 Changes SecUnicodeMapFile in recommend configuration
The parameter was using a deprecated syntax, now it is fixed.
2013-12-18 03:48:15 -08:00
Breno Silva
1f271fdcae Fixed: Rule 200003 returning default status 2013-05-03 10:37:16 -04:00
brenosilva
2403a1a549 Fix some strange breakline situation in apache24 2012-10-19 02:39:07 +00:00
brenosilva
6e107a8b12 Fix rule 200002 2012-10-15 13:28:37 +00:00
brenosilva
6335e5426c Added MULTIPART_INVALID_PART flag 2012-10-14 23:47:27 +00:00
brenosilva
0499f1444f Added unicode mapping directives to recommended file 2012-09-26 13:40:22 +00:00
brenosilva
57b80fedcc Added unicode mapping directives to recommended file 2012-09-26 13:38:37 +00:00
brenosilva
8ead49a9b7 Added id to recommended file rules 2012-06-06 16:55:36 +00:00
brenosilva
d3ad05e9c9 MODSEC-312 2012-06-01 20:16:06 +00:00
brenosilva
1341c49838 Remove log part K from default configuration 2011-05-25 17:56:07 +00:00
brenosilva
43e3ea65b7 update recommended configuration 2011-04-18 16:54:26 +00:00