This commit is contained in:
sbyrd 2024-12-10 17:42:17 -05:00
commit 44bb45927f
1 changed files with 24 additions and 0 deletions

24
modsecurity-init.conf Normal file
View File

@ -0,0 +1,24 @@
SecDefaultAction "log,deny,auditlog,phase:2,status:403"
modsecurity on;
modsecurity_rules_file modsecurity.d/nginx-waf/conf/tortix_waf.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/00_asl_whitelist.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/00_asl_x_searchengines.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/00_asl_y_searchengines.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/00_asl_z_antievasion.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/00_asl_zz_strict.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/01_asl_content.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/03_asl_dos.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/05_asl_exclude.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/10_asl_rules.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/11_asl_data_loss.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/12_asl_brute.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/20_asl_useragents.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/30_asl_antispam.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/31_asl_urispam.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/50_asl_rootkits.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/51_asl_rootkits.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/60_asl_recons.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/61_asl_recons_dlp.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/98_asl_jitp.conf;
modsecurity_rules_file modsecurity.d/nginx-waf/99_asl_jitp.conf;