User Tools

Site Tools


ubuntu:modsecurity

This is an old revision of the document!


ModSecurity

Mod security is a free Web Application Firewall (WAF) that works with Apache, Nginx and IIS. It supports a flexible rule engine to perform simple and complex operations and comes with a Core Rule Set (CRS) which has rules for SQL injection, cross site scripting, Trojans, bad user agents, session hijacking and a lot of other exploits.

Configure mod_security

Excluding Hosts and Directories

Installing mod_security

Setting Up Rules

Testing SQL Injection

Writing Your Own mod_security Rules

References

ubuntu/modsecurity.1574602412.txt.gz · Last modified: 2020/07/15 09:30 (external edit)

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki