Commit Graph

  • 6fd069ad69 bin cleanup Mihai Pitu 2013-08-22 14:48:39 +03:00
  • 0d90b57414 Delete .cpp file, transformed into .c file mihaipitu 2013-08-22 14:45:43 +03:00
  • e1cd024c26 configs Mihai Pitu 2013-08-22 14:44:02 +03:00
  • 656f7c513c Delete v3wkqlls.fht.txt mihaipitu 2013-08-22 13:18:40 +03:00
  • c0635a0d29 Delete modsecurity.conf mihaipitu 2013-08-15 21:35:43 +03:00
  • 79aa6950d0 documentation additions Mihai Pitu 2013-08-15 21:18:36 +03:00
  • 3ad9f3b767 Delete build.xml mihaipitu 2013-08-15 21:11:24 +03:00
  • 408a8d86dc Delete build.xml mihaipitu 2013-08-15 21:11:04 +03:00
  • 0972712967 Windows binaries and help Mihai Pitu 2013-08-14 21:41:54 +03:00
  • 8ff45eaa15 Delete Post.jsp mihaipitu 2013-08-09 15:50:07 +03:00
  • a662d8fe4c modsecurity loader Mihai Pitu 2013-08-09 15:48:00 +03:00
  • b1755c5b84 Write request & response callbacks Mihai Pitu 2013-08-02 15:16:00 +03:00
  • 1637bcb774 Response headers & body Mihai Pitu 2013-07-26 15:14:21 +03:00
  • 8f3b3eb468 Support for file upload & request/response java wrappers Mihai Pitu 2013-07-12 11:48:46 +01:00
  • b9080aad18 Java test WebApp Mihai Pitu 2013-07-05 14:22:20 +01:00
  • a6c1627987 Read request headers and body Mihai Pitu 2013-06-27 22:40:18 +01:00
  • 9863fca181 read request headers and body Mihai Pitu 2013-06-27 22:37:21 +01:00
  • 455cbbac9e JNI calls for log Mihai Pitu 2013-06-16 22:47:47 +01:00
  • c18fe9ea8a Java solution Mihai Pitu 2013-06-16 18:53:01 +01:00
  • 065437e1d1 GSOC Proposal Mihai Pitu 2013-04-24 22:39:50 +01:00
  • 3336ebd57d GSOC Proposal Mihai Pitu 2013-04-24 22:05:13 +01:00
  • f61a9b1556 GSOC Proposal Mihai Pitu 2013-04-24 21:48:53 +01:00
  • 3d07d3ebee GSOC Proposal Mihai Pitu 2013-04-24 20:35:29 +01:00
  • 8509ff6f83 VS12 solution Mihai Pitu 2013-04-22 13:01:24 +01:00
  • da5948033f VS12 solution Mihai Pitu 2013-04-22 12:45:36 +01:00
  • 821930c8a6 VS12 solution Mihai Pitu 2013-04-22 12:40:00 +01:00
  • 4eb095ad25 Adds information about the pull request #852 on the CHANGES file Felipe Zimmerle 2016-01-26 09:28:20 -03:00
  • 0db247f0e9 Replicates CREATEMODE patch to the secondary auditlog file Felipe Zimmerle 2016-01-26 09:20:25 -03:00
  • b175c5cf60 Update apache2_config.c littlecho 2015-03-26 15:22:45 +08:00
  • 35fbc76ecc Adds information about the pull request #1041 on the CHANGES file Felipe Zimmerle 2016-01-25 14:58:24 -03:00
  • d434a6c043 Fixing missing return value check for hashing response injection failure Chaim Sanders 2016-01-07 11:36:50 -05:00
  • b3f197dd1f Adds information about the pull request #709 on the CHANGES file Felipe Zimmerle 2016-01-25 13:40:46 -03:00
  • 3f9e2ccc7c Stop buffering when the request is larger than SecRequestBodyLimit and in ProcessPartial mode Justin Gerace 2014-04-24 16:06:00 -07:00
  • 31117d7577 Fix error on older systems Chaim Sanders 2016-01-12 14:07:48 -05:00
  • b9b3e82900 Fix AuditLog parts selection Felipe Zimmerle 2016-01-21 15:03:47 -03:00
  • 9343942398 Adds mutex around the write operation on the auditlogs Felipe Zimmerle 2016-01-20 10:21:21 -03:00
  • b4691aa748 Updates python bindings version Felipe Zimmerle 2016-01-18 13:53:17 -03:00
  • b46dc34573 Temporarily disable the HTML ENTITY DECODE transformation Felipe Zimmerle 2016-01-18 13:48:00 -03:00
  • a102b5ce2c Improves the method fill the ARGS collection Felipe Zimmerle 2016-01-15 10:35:24 -03:00
  • 98f45f357a Using a better number generator to avoid conflicts Felipe Zimmerle 2016-01-15 09:34:51 -03:00
  • 36dfe81da0 Adds YAJL_CFLAGS to the project core Felipe Zimmerle 2016-01-15 08:12:40 -03:00
  • fc225ff001 Fix whoAmI() call on Transaction Felipe Zimmerle 2016-01-15 08:12:27 -03:00
  • b06eaadac7 Places the classes related to audit log into a separate namespace Felipe Zimmerle 2016-01-14 14:25:33 -03:00
  • 2830525f89 Adds missing file: script.lua Felipe Zimmerle 2016-01-14 12:07:59 -03:00
  • aaf995cc71 Adds missing file: transaction.h and removes assay.cc from git Felipe Zimmerle 2016-01-14 12:06:19 -03:00
  • e45ad3b08e Updates Python bindings git hash Felipe Zimmerle 2016-01-14 12:03:28 -03:00
  • 4db5cc7d26 Refactoring on Transaction class: adding comments and renaming variables Felipe Zimmerle 2016-01-14 11:58:40 -03:00
  • 6f1e6f37d7 Fix trasanction cleanup on the C API Felipe Zimmerle 2016-01-14 09:39:11 -03:00
  • a51e707517 Renames class Assay to Transaction Felipe Zimmerle 2016-01-13 14:38:37 -03:00
  • f3fd5d6621 Adds owasp/2 experiemntal rules on the test set for benchmark Felipe Zimmerle 2016-01-12 14:15:55 -03:00
  • d780fd6290 Fix the parse to distinguish between @pm content and a variable Felipe Zimmerle 2016-01-12 13:59:27 -03:00
  • 702551ed42 Adds support to action `exec' to sec lang parser Felipe Zimmerle 2016-01-12 10:57:06 -03:00
  • 331df90bab Enables OWASP CRS optional_rules on becnhmark test case Felipe Zimmerle 2016-01-12 10:50:38 -03:00
  • 923620fbd0 Adds support to the action `allow' in the sec parser Felipe Zimmerle 2016-01-12 10:42:36 -03:00
  • 7901c2c899 Adds the actions SetSID and SetUID to the seclang parser Felipe Zimmerle 2016-01-12 10:34:33 -03:00
  • ab92bed6fa Parser improvement: Supporting variables selection with regex Felipe Zimmerle 2016-01-12 09:59:33 -03:00
  • 3acc013e49 Improves the secrules parser Felipe Zimmerle 2016-01-11 17:14:02 -03:00
  • ed13cab9f4 Adds script to download and configure benchmark script to use owasp v[3,2] Felipe Zimmerle 2016-01-11 15:19:41 -03:00
  • f23908f145 Improves the secrules parser Felipe Zimmerle 2016-01-11 15:14:26 -03:00
  • a4d8dfd5ee Adds ModSecurity recommended configuration file Felipe Zimmerle 2016-01-11 13:56:14 -03:00
  • 1068da464c Updated recommended conf to enter XML processor when content-type is application/xml Chaim Sanders 2016-01-11 10:43:05 -05:00
  • 880b2764a3 Updated Licensing information to reflect year Chaim Sanders 2016-01-11 10:09:41 -05:00
  • 05bcafd4fc Extends Lua implementation to support Lua 5.3 Felipe Zimmerle 2016-01-08 09:24:12 -03:00
  • 74558b42e4 Fix build issue with Lua >= 5.3 Athmane Madjoudj 2015-02-13 13:24:50 +01:00
  • 29680d69aa Updated geoip m4 file to support from path Chaim Sanders 2016-01-07 00:22:40 +00:00
  • 5273258261 Fix libxml configure script Felipe Zimmerle 2016-01-07 10:20:34 -03:00
  • 8c7b6199f7 Optimization on the tolower function Felipe Zimmerle 2016-01-07 09:16:06 -03:00
  • 0762892368 Small fix on pull request #982 Felipe Zimmerle 2016-01-06 14:36:30 -03:00
  • e38a468a26 Updated with suggestions from @zimmerle for code style Chaim Sanders 2015-11-23 09:28:31 -05:00
  • b3ab9a4084 Support for correct implimentation of REQUEST_URI Chaim Sanders 2015-11-23 00:55:08 -05:00
  • dd35b47764 Removes initcol debug messages Felipe Zimmerle 2016-01-06 14:48:34 -03:00
  • a225f8b5b7 Fix SecResponseBodyMimeType test case Felipe Zimmerle 2016-01-06 14:45:06 -03:00
  • cb91850bcd Adds information about the pull request #881 on the CHANGES file Felipe Zimmerle 2016-01-06 15:02:41 -03:00
  • bd7ee39d2e Allow user to choose between TLS versions(TLSProtocol option introduced). Ishwor Gurung 2015-05-03 16:59:59 +10:00
  • 831282ee2c Adds information about the pull request #1031 on the CHANGES file Felipe Zimmerle 2016-01-06 08:27:40 -03:00
  • c711808ef7 Cosmetic changes on #1031 to avoid compilation warning Felipe Zimmerle 2016-01-06 08:24:48 -03:00
  • e3b3721ee3 Allow mod_proxy's "nocanon" behavior to be specified in proxy actions. Mario D. Santana 2015-12-15 16:04:20 -07:00
  • 258e5545a2 Perform the intercept_action as well as the disruptive actions. Mario D. Santana 2015-12-15 16:03:45 -07:00
  • 59851fff2b Adds information about the issue #996 on the CHANGES file Felipe Zimmerle 2015-12-09 10:06:00 -03:00
  • 3a7fdf8fc0 Refactoring conditional directives for if wrappers, alternative if statements and incomplete if conditions. Wesley M 2015-12-08 23:26:26 -03:00
  • c373256d46 Adds information about the pull request #775 on the CHANGES file Felipe Zimmerle 2016-01-04 15:02:31 -03:00
  • b3ce3da2fc mlogc-batch-load.pl.in: fix searching SecAuditLogStorageDir files with Apache 2.4 Elia Pinto 2014-09-26 06:52:45 -07:00
  • 51f1ff6ebf iis-installer: Adds IIS 10 on the suported list Felipe Zimmerle 2015-09-28 13:03:32 -03:00
  • 6ebe6dfd87 Merge pull request #1038 from pwnbus/update_readme_shell_syntax Chaim Sanders 2015-12-29 15:21:38 -05:00
  • ebf2c88556 Update readme to use shell syntax Brandon Myers 2015-12-29 15:19:15 -05:00
  • decf04d264 Adds support to SecResponseBodyMimeType Felipe Zimmerle 2015-12-24 11:53:43 -03:00
  • c2d9a153cb Adds support to afl fuzzer in the build system Felipe Zimmerle 2015-12-22 19:21:57 -03:00
  • 7cebc632e4 Adds Python bindings to the main ModSecurity git repo Felipe Zimmerle 2015-12-22 19:28:42 -03:00
  • 913e22a77d Adds initial support to initcol action Felipe Zimmerle 2015-12-15 17:53:27 -03:00
  • fb3696ac04 Fix a few things to provide an easy interface for script bindings Felipe Zimmerle 2015-12-22 11:50:18 -03:00
  • ac10d8863c Changes the operator evaluate method to only support two arguments Felipe Zimmerle 2015-12-18 15:20:46 -03:00
  • 215c4d1071 Fix ARGS_POST and ARGS_GET variables order on the parser Felipe Zimmerle 2015-12-11 09:26:01 -03:00
  • 2a950a435b Fix various minor bugs in the regression test suite Felipe Zimmerle 2015-12-10 18:36:20 -03:00
  • 42ce0475b2 Coding style: changes the namespace in the comments Felipe Zimmerle 2015-12-10 13:20:32 -03:00
  • 8defe8ac3d Adds information about the pull request #840 on the CHANGES file Felipe Zimmerle 2015-10-22 18:09:32 -03:00
  • 8f3bc3cbac Introduced ap_log_rerror declaration to standalone/server.c Christian Folini 2015-11-30 14:40:06 +01:00
  • 76dfc1a90b Fix apache logging limitation by using correct apache call. Apache 2.4 brought the option to change the ErrorLogFormat. However, many fields remain empty, as ModSecurity uses the wrong apache logging function. This fixes this behaviour with the use of ap_log_rerror. vfolin 2015-02-16 12:52:52 +01:00
  • 0694cd30ca Adds support to libxml2 detection on the build system Felipe Zimmerle 2015-12-10 11:17:07 -03:00
  • 80b82d3707 Adds the Global LDADD option and fed according to the platform Felipe Zimmerle 2015-12-01 17:20:51 -03:00
  • 467c977afc Fix compilation without the GeoIP headers installed on the system Felipe Zimmerle 2015-12-01 15:27:14 -03:00