linus

关于 modsecurity 的疑问

  •  
  •   linus · Aug 8, 2016 · 4502 views
    This topic created in 3567 days ago, the information mentioned may be changed or developed.

    [root@xxx waf-fle-0.6.3]# /etc/init.d/mlog2waffle start Starting mlog2waffle... Starting up mlog2waffle in "tail" mode, using config file /etc/mlog2waffle.conf Error in HTTP connection: 403 Forbidden [FAILED]

    tailf /var/log/httpd/modsec_debug.log
    [08/Aug/2016:18:59:47 +0800] [maf/sid#7f937f876850][rid#7f93804cf8a8][/controller/][1] Access denied with code 403 (phase 1). Match of "rx ^0$" against "REQUEST_HEADERS:Content-Length" required. [file "/etc/httpd/crs/owasp-modsecurity-crs/base_rules/modsecurity_crs_21_protocol_anomalies.conf"] [line "84"] [id "960904"] [rev "2"] [msg "Request Containing Content, but Missing Content-Type header"] [severity "NOTICE"] [ver "OWASP_CRS/2.2.9"] [maturity "9"] [accuracy "9"]

    No Comments Yet
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   3054 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 26ms · UTC 06:49 · PVG 14:49 · LAX 23:49 · JFK 02:49
    ♥ Do have faith in what you're doing.