Update open-appsec-k8s-prevent-config-v1beta1.yaml

This commit is contained in:
orianelou 2025-02-17 16:06:02 +02:00 committed by GitHub
parent f1303c1703
commit a99c2ec4a3
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -11,3 +11,58 @@ spec:
source-identifiers: "" source-identifiers: ""
trusted-sources: "" trusted-sources: ""
exceptions: [] exceptions: []
---
apiVersion: openappsec.io/v1beta1
kind: LogTrigger
metadata:
name: appsec-log-trigger-cloud
spec:
access-control-logging:
allow-events: false
drop-events: true
appsec-logging:
detect-events: false
prevent-events: true
all-web-requests: false
additional-suspicious-events-logging:
enabled: true
minimum-severity: high
response-body: false
extended-logging:
url-path: false
url-query: false
http-headers: false
request-body: false
log-destination:
cloud: true
syslog-service: []
file: ""
stdout:
format: json
cef-service: []
--
apiVersion: openappsec.io/v1beta1
kind: Practice
metadata:
name: appsec-best-practice
spec:
anti-bot:
injected-URIs: []
validated-URIs: []
openapi-schema-validation:
configmap: []
snort-signatures:
configmap: []
web-attacks:
minimum-confidence: high
override-mode: prevent-learn
--
apiVersion: openappsec.io/v1beta1
kind: CustomResponse
metadata:
name: 403-forbidden
spec:
http-response-code: 403
message-body: ""
message-title: ""
mode: response-code-only