Hi Christian and all, I follow the discussion about the paranoia mode with great interest. I think it could be a good starting point for ModSecurity users which do not have the expert knowledge of the rules.
Looking at your proposed structure of the paranoia mode setup, I think it's on a good track. The structure is easy to understand! Unfortunately I can't comment the different rules, as I don't have much experience with them. Thanks to all of you putting such great effort to the CRS and I'm really looking forward to version 3! Cheers, Lukas >> Dear all, >> >> With the progress we are making on the rules front, it is time to talk about >> the way it could be implemented. >> It's time for the show-me-the-code. He you go: >> >> https://www.netnea.com/cms/2016/02/04/owasp-modsecurity-core-rules- >> paranoia-mode-mechanics-proposal/ >> >> Feedback welcome! >> >> Christian
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ Owasp-modsecurity-core-rule-set mailing list Owasp-modsecurity-core-rule-set@lists.owasp.org https://lists.owasp.org/mailman/listinfo/owasp-modsecurity-core-rule-set