Hi, I confirm: the modsecurity i done throught SPOE.
The limitation are: The limit of the body size analysed is the size of HAProxy buffer (default 16kB, but for my own usage, I configure 1MB) The response is not analysed. BR, Thierry > On 9 May 2018, at 21:40, Andrew Smalley <[email protected]> wrote: > > Hi Mark > > Actually as far as I understand the Haproxy implementation of > mod_security integration is not with Lua but with SPOA > > https://www.haproxy.org/download/1.7/doc/SPOE.txt > Andruw Smalley > > Loadbalancer.org Ltd. > > www.loadbalancer.org > +1 888 867 9504 / +44 (0)330 380 1064 > [email protected] > > Leave a Review | Deployment Guides | Blog > > > On 9 May 2018 at 20:36, Mark Lakes <[email protected]> wrote: >> RIght, via lua module it integrates with haproxy. >> -mark >> >> >> >> >> Mark Lakes >> Sr Software Engineer >> (555) 555-5555 >> Winner: InfoWorld Technology of the Year 2018 >> >> >> On Wed, May 9, 2018 at 11:43 AM, Jonathan Matthews <[email protected]> >> wrote: >>> >>> On Wed, 9 May 2018 at 18:43, Mark Lakes <[email protected]> wrote: >>>> >>>> For commercial purposes, see Signal Sciences Next Gen WAF solution: >>>> https://www.signalsciences.com/waf-web-application-firewall/ >>> >>> >>> That page says it supports "Nginx, Nginx Plus, Apache and IIS". Does it >>> integrate with HAProxy? Via what mechanism? >>> >>> J >>> >>> -- >>> Jonathan Matthews >>> London, UK >>> http://www.jpluscplusm.com/contact.html >> >> >

