1 May 19:42
Re: Mod_Security and Content-Encoding: gzip
Ryan Barnett <Ryan.Barnett <at> Breach.com>
2007-05-01 17:42:06 GMT
2007-05-01 17:42:06 GMT
Very timely... The short answer however is - No, Mod can not handle
compressed/gzipped data. Ofer will be releasing an update to the Core
Rules shortly and there are some updates to address compressed content
(from an alerting perspective).
This is from the CHANGES file -
ModSecurity does not support compressed content at the moment. Thus, the
following rules have been added:
- 960013 - Content-Encoding in request not supported
Any incoming compressed request will be denied
- 960051 - Content-Encoding in response not suppoted
An outgoing compressed response will be logged to alert, but ONLY
ONCE.
--
--
Ryan C. Barnett
ModSecurity Community Manager
Breach Security: Director of Application Security Training
Web Application Security Consortium (WASC) Member
Author: Preventing Web Attacks with Apache
--------------
Web Security Threat Report Webinar on May 9, 2007 (12 pm EST)
Learn More About the Breach Webinar Series:
http://www.breach.com/webinars.asp
--------------
> -----Original Message-----
> From: mod-security-users-bounces <at> lists.sourceforge.net [mailto:mod-
> security-users-bounces <at> lists.sourceforge.net] On Behalf Of Jim Hermann
(Continue reading)
RSS Feed