bunkerity / bunkerweb

🛡️ Make your web services secure by default !
https://www.bunkerweb.io
GNU Affero General Public License v3.0
3.78k stars 240 forks source link

[FEATURE] Add configuration for coreruleset V4 plugins #1308

Open thelittlefireman opened 1 week ago

thelittlefireman commented 1 week ago

What's needed and why?

Hi, could it be possible to get a feature to include the new [https://coreruleset.org/docs/concepts/plugins/#how-to-install-a-plugin plugins](https://coreruleset.org/docs/concepts/plugins/#how-to-install-a-plugin plugins) with bw and coreruleset V4. Thanks

Implementations ideas (optional)

It could be useful to get another docker volume like modsec-plugins for loading theses modesec plugins or maybe just a list of plugin in MODSEC-EXTERNAL_PLUGIN_URLS=https://XXXX or maybe something else.

The nextcloud-rule-exclusions-plugin https://github.com/coreruleset/nextcloud-rule-exclusions-plugin is a good start and could be added as example.

Code of Conduct

TheophileDiot commented 1 week ago

Hi @thelittlefireman, thank you for opening this feature request. I'll keep you updated on our progress.

TheophileDiot commented 1 week ago

Just finished the feature's first version, it will be available in the 1.6.0-beta release 🥳