modsecurity-waf/nginx-waf/05_asl_exclude.conf

13 lines
454 B
Plaintext

SecDefaultAction "log,deny,auditlog,phase:2,status:403"
SecRule REQUEST_FILENAME "\.*" "phase:2,id:91043,t:none,t:lowercase,pass,nolog,noauditlog"
# Current Sigs with known issues.
# Distribution of this work or derivative of this work in any form is
# prohibited unless prior written permission is obtained from the
# copyright holder.
#
# DO NOT MODIFY THIS FILE
# Make your own exclude list as 00_asl_custom_exclude.conf
# ---ASL-CONFIG-FILE---