527 Commits

Author SHA1 Message Date
brectanus
ac767de86e Typo in SecRuleUpdateActionById example. 2008-09-05 15:29:25 +00:00
brectanus
f20059b009 Make sure we fail to validate DTD/schema after a parsing error. Fixes MODSEC-5. 2008-09-03 22:16:42 +00:00
brectanus
f5af5ef429 Remove declaration of an unused variable. 2008-09-03 21:20:06 +00:00
brectanus
34798e9abe Allow ability to force request body buffering to memory. Fixes MODSEC-2. 2008-09-03 20:42:28 +00:00
brectanus
139d651bbf Updated the CHANGES. 2008-09-03 18:06:14 +00:00
brectanus
deb6a816b4 Fixed MODSEC-2 by using the msr->hostname (ap_get_server_name(r)) vs r->hostname in the log. 2008-09-02 23:43:15 +00:00
brectanus
20cc395510 Added mlogc source. 2008-09-02 23:10:36 +00:00
ivanr
2818e66a95 Tidy up the code for the performance-measurement mode. Remove the per-phase measurements, which don't seem to work (at least not in my case). 2008-09-01 09:38:30 +00:00
ivanr
acec75be45 Make PERFORMANCE_MEASUREMENT more accurate by removing stray msr_log() invocation. Clean the code a bit. 2008-08-29 16:09:59 +00:00
ivanr
9997cee04a Clarified that SecMarker IDs are the same thing as rule IDs. 2008-08-27 14:46:31 +00:00
ivanr
1b977e6106 Clarifications in response to comments from Kiyohiko Kajihara. 2008-08-27 12:22:56 +00:00
brectanus
a686b0633a Update configure to better find lua libs. 2008-08-18 16:00:29 +00:00
brectanus
ab5cd92618 Update a regression test due to changed error message. 2008-08-15 21:04:12 +00:00
brectanus
7eef5ce7ae Update test stup with new msr_log_* wrappers. 2008-08-15 20:45:28 +00:00
brectanus
d419a21682 Update CHANGES.
Sync up docs.
2008-08-15 20:25:27 +00:00
brectanus
225339525d Allow disabling processing of request body size limit in phase 1. See #518. 2008-08-15 20:21:25 +00:00
brectanus
5298e29540 Added XML warn/error output to debug log. See #519. 2008-08-15 19:58:02 +00:00
brectanus
458fe8423c Add parity transformations. See #516. 2008-08-14 23:49:39 +00:00
brectanus
94370b2c76 Update default action in unit test stub. 2008-08-14 23:43:18 +00:00
brectanus
bb2e4b9a3e Fix cssDecode. See #512. 2008-08-14 23:37:40 +00:00
brectanus
5f648db898 Updated regression suite to use full path to LoadModule. 2008-08-08 22:50:47 +00:00
brectanus
10713fbd37 Sync up branches/2.5.x and trunk. 2008-07-31 22:36:24 +00:00
ivanr
9c6b267447 Change licence file to Unix format. 2008-07-31 08:43:43 +00:00
ivanr
a05445e335 Tidy up whitespace. More characters in the commit messages than in the change itself! Way, way, more. This is what happens when you work too much. 2008-07-29 15:46:45 +00:00
brectanus
924ce68c55 Update readme to point to new exception filename. 2008-07-29 15:40:37 +00:00
brectanus
7899b5c6e0 Update licensing. 2008-07-29 15:38:32 +00:00
brectanus
6a33fedc81 Regression suite cleanup merged from 2.5.x. 2008-07-29 05:50:03 +00:00
brectanus
478389d5a4 Added regression tests for ctl:ruleRemoveById and disruptive actions in DetectionOnly mode. 2008-07-22 17:03:30 +00:00
ivanr
ae40b8c213 Implemented cssDecode. 2008-07-16 13:08:12 +00:00
brectanus
e6e06bff72 Update trunk CHANGES with 2.5.5 release. 2008-07-07 15:47:49 +00:00
brectanus
200d9e5fe3 Firewalls not fireballs ;) 2008-06-16 22:13:52 +00:00
brectanus
326208d02c Newer apaches default to text/plain instead of null.
Make matching files a bit more robust.
2008-06-16 17:20:50 +00:00
brectanus
21f305095c Fixed warning for mixed CRLF/LF lines and LF lines in changeset:1070. See #504. 2008-06-05 18:03:20 +00:00
brectanus
f072738c82 Remove an extraneous debug statement and update version date. 2008-06-05 17:29:29 +00:00
brectanus
0b1e2d674a Fix a minor typo in a comment. 2008-06-05 17:01:42 +00:00
brectanus
d9ba0e98b2 Fixed a typo from changeset:1072. See #498. 2008-06-05 16:52:22 +00:00
brectanus
493e71a9ec Tweak some regression tests. 2008-06-05 16:44:18 +00:00
ivanr
e1e200c005 Disabled phase 5 after interception by mistake. Fixed 2008-06-05 14:57:05 +00:00
ivanr
c3fd0231d0 Prevent phases from being processed more than once. 2008-06-05 14:52:48 +00:00
ivanr
b2119411dd Minor code cleanup. 2008-06-05 14:00:28 +00:00
ivanr
81d98de283 Log strict multipart errors at level 4. 2008-06-05 13:52:30 +00:00
brectanus
83ff6c4796 Re-enable error output filter with a fix after more testing/tracing of code. See #498.
Update versions to ready for release of 2.5.5.
2008-06-03 20:28:05 +00:00
brectanus
230837d4a3 Update/reorg some regression tests. 2008-06-03 20:24:14 +00:00
brectanus
16acbe4949 Fixed issue where logging was not occuring unless "auditlog" was enabled. See #497, #4, #451 and #445. 2008-06-02 23:34:31 +00:00
brectanus
f2449c6f35 Enable "auditlog" action by default. See #445 and #451. 2008-06-02 23:31:27 +00:00
brectanus
e209cb7688 More regression testing updates. 2008-06-02 23:13:45 +00:00
brectanus
6cd8459bc8 Update docs on persistant storage. See #479 and #495. 2008-05-30 20:52:51 +00:00
brectanus
0c95f9c644 Backport fix to improve request body processing error messages. See #504. 2008-05-30 20:16:34 +00:00
brectanus
4d2fa2741c Backported changeset:1056 to 2.5.x which handles a lacking new line after the final multipart boundary. See #502. 2008-05-30 20:07:47 +00:00
brectanus
6241dfe961 Fixed XML multithreading crash. See #501. 2008-05-30 20:01:44 +00:00