On Mon, Apr 8, 2013 at 4:40 PM, Dan Scott <danieljamessc...@gmail.com>wrote:
> > To re-iterate, mod_security seems to be working correctly for all > pages except the root of the site. Is there something that I'm > missing? Why would mod_security still log a 403 error, but not > actually block the request? > > Hi Dan, Good question. Have you tried increasing the SecDebugLogLevel to 9 and look in the debug log? Is there an audit log produced? -- - Josh
_______________________________________________ Owasp-modsecurity-core-rule-set mailing list Owasp-modsecurity-core-rule-set@lists.owasp.org https://lists.owasp.org/mailman/listinfo/owasp-modsecurity-core-rule-set