Closed thelittlefireman closed 3 years ago
We can add this kind of project to parse them https://github.com/molu8bits/modsecurity-parser
Hello @thelittlefireman,
I think it should be better with the last version. I've removed the SecAuditLogRelevantStatus directive to avoid logging when ModSecurity is not blocking the request. Also, the modsec_audit.log is now directly displayed. Feel free to open a new issue if needed.
Hi, I'm wondering why bunkerized-nginx modesecurity log is not verbose as usual modsecurity ?
(---H--- section is never redacted)
it's only apear when
SecRuleEngine DetectionOnly
is placed in modsec-confs of a site.Bunkerized modsecurity audit log, most of the time i don't know why the request have been blocked by modesecurity
To compare a mod security instance that i plan to replace by bunkerizerd :