Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 9 of 9
  1. #1
    Member
    Join Date
    Nov 2003
    Posts
    332

    Default mod_security best rules

    Hello

    after mod_security installation throught easyapache the rules configuration is empty

    so, what think is good rules to download and set for hosting server ?

    On other server a sysadmin have set in WHM > modesecurity config :

    <IfModule mod_security2.c>
    Include /usr/local/apache/conf/rul_modsec/*.conf
    </IfModule>

    any suggest about this or other rules project ?

    Thanks
    --

  2. #2
    Member ModServ's Avatar
    Join Date
    Oct 2006
    Location
    Egypt
    Posts
    228
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Go to Welcome : Got Root may it helps you.

    ModServ for Hosting & Web Services Solutions
    URL: http://www.modserv.com.eg

  3. #3
    Member
    Join Date
    Nov 2003
    Posts
    332

    Default

    Hello

    We have installed rules

    File modsec2.user.conf is ok:

    Include /usr/local/apache/modsecurity.d/*asl*.conf
    Include /usr/local/apache/modsecurity.d/exclude.conf

    BUT there is nothing filtered on more than 10 days.. impossible

    How we can make simple test ?

    We have already restart apache, all works fine except mod_security

    any suggest ?

    Thanks
    --

  4. #4
    Member ModServ's Avatar
    Join Date
    Oct 2006
    Location
    Egypt
    Posts
    228
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Hello,

    Check the log:

    tail -fv /usr/local/apache/logs/modsec_audit.log

    ModServ for Hosting & Web Services Solutions
    URL: http://www.modserv.com.eg

  5. #5
    Member
    Join Date
    Nov 2003
    Posts
    332

    Default

    uhm..

    only 1 row and with
    .. "GET /robots.txt HTTP/1.1" 500 67 ..

    nothing other :/
    Last edited by webstyler; 02-12-2010 at 01:48 AM.
    --

  6. #6
    Member
    Join Date
    Nov 2003
    Posts
    332

    Default

    we have check the mysql table of modsec and is empty
    --

  7. #7
    cPanel Product Evangelist Infopro's Avatar
    Join Date
    May 2003
    Location
    Pennsylvania
    Posts
    7,891
    cPanel/Enkompass Access Level

    Root Administrator

    Lightbulb

    Quote Originally Posted by webstyler View Post
    we have check the mysql table of modsec and is empty
    Assuming there is some sort of configuration issue with your added rulesets, try this to see if we can get you going at least.

    In WHM, very bottom of left menu find Mod Security and click.
    Top of the page that opens, there should be a button here titled Edit Config, click it.
    Next page you should see some links at top. Is the box below empty? At top of page click Default Configuration and automagically fill the box.

    Now Click Save Configuration. Restart Apache for good measure.
    Fav cPlinks this week: Blog - cPanel & WHM 11.32 we love it! | cPanel University study for it! | Attracta is coming! we want this!

  8. #8
    Member
    Join Date
    Nov 2003
    Posts
    332

    Default

    Quote Originally Posted by Infopro View Post
    Assuming there is some sort of configuration issue with your added rulesets, try this to see if we can get you going at least.

    In WHM, very bottom of left menu find Mod Security and click.
    Top of the page that opens, there should be a button here titled Edit Config, click it.
    Next page you should see some links at top. Is the box below empty? At top of page click Default Configuration and automagically fill the box.

    Now Click Save Configuration. Restart Apache for good measure.

    WHM Config have value of modsec2.user :

    Include /usr/local/apache/modsecurity.d/*asl*.conf
    Include /usr/local/apache/modsecurity.d/exclude.conf
    --

  9. #9
    cPanel Product Evangelist Infopro's Avatar
    Join Date
    May 2003
    Location
    Pennsylvania
    Posts
    7,891
    cPanel/Enkompass Access Level

    Root Administrator

    Question

    Quote Originally Posted by webstyler View Post
    WHM Config have value of modsec2.user :

    Include /usr/local/apache/modsecurity.d/*asl*.conf
    Include /usr/local/apache/modsecurity.d/exclude.conf
    Yes I know, you mention it earlier on in the thread.

    Did you populate the the box as I described above?
    Fav cPlinks this week: Blog - cPanel & WHM 11.32 we love it! | cPanel University study for it! | Attracta is coming! we want this!

Similar Threads & Tags
Similar threads

  1. mod_security rules
    By big_bull in forum Security
    Replies: 1
    Last Post: 06-11-2010, 09:08 PM
  2. Help with mod_security rules
    By PPNSteve in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 02-25-2008, 12:51 PM
  3. mod_security rules
    By Jimmyftw in forum cPanel and WHM Discussions
    Replies: 14
    Last Post: 01-03-2007, 01:09 AM
  4. rules mod_security..what about?
    By Creazioni in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 10-03-2006, 07:34 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube