ModSecurity

From OCF Help

Jump to: navigation, search

ModSecurity (mod_security) is an Apache module that provides an application layer firewall for web applications. The OCF uses ModSecurity to protect our web users from common web application attacks and comment spam.

Troubleshooting

ModSecurity is configured using a set of rules that determine whether a request should be flagged as an attack or comment spam. Unfortunately, as with any firewall and spam filtering system, there is always the possibility for false positives.

If you believe that ModSecurity is causing problems with your web application, please perform the following steps before contacting OCF staff:

  1. Check the web server logs (particularly the error logs) to verify that ModSecurity is causing problems.
  2. Identify the relevant log messages and include them in your correspondence.

External links

Personal tools