Closed 8u closed 2 months ago
Maybe this is your problem?
Both nginx and httpd containers now run with an unprivileged user. This means that we cannot bind to ports below 1024, so you might need to correct your PORT and SSL_PORT settings. Now the defaults for both nginx and httpd are 8080 and 8443
We probably need to have this more prominent in the docs.
To solve it, try using
...
ports:
- "80:8080"
The default port in the image is now 8080. Either you use that too (- "80:8080"
) or you need to set the PORT
variable to PORT=80
(will probably not work on Linux).
That was the reason, thank you.
Using owasp/modsecurity-crs:apache in a simple non-TLS proxy configuration:
4.1.0-apache-202404070904 was functioning normally:
4.1.0-apache-202404131004 with the same configuration fails however:
Attaching both debug logs. The only visible difference is the (incorrect) warning present in the old and working 202404070904, but missing in the affected 202404131004:
4.1.0-apache-202404131004.debug.log.txt 4.1.0-apache-202404070904.debug.log.txt