Closed GoogleCodeExporter closed 8 years ago
Nginx error log entry is following:
2013/04/04 15:36:11 [error] 29763#0: *32 NAXSI_FMT:
ip=192.168.100.23&server=gate2.development&uri=/&total_processed=17&total_blocke
d=4&zone0=BODY&id0=11&var_name0=, client: 192.168.100.23, server:
gate2.development, request: "POST /?object=Session&action=getSalt HTTP/1.1",
host: "gate2.development"
I haven't found what id0=11 mean.
Original comment by ser...@galkin.me
on 4 Apr 2013 at 12:12
Hello,
Rules with IDs lower than 1000 are naxsi internal rules.
You can find them in your naxsi_core.rules :
#@MainRule "msg:weird/incorrect request" id:1;
#@MainRule "msg:big request, unparsed" id:2;
#@MainRule "msg:uncommon hex encoding (%00 etc.)" id:10;
#@MainRule "msg:uncommon/empty content-type in POST" id:11;
#@MainRule "msg:uncommon/malformed URL" id:12;
Here, it it because your POST has apparently no content, which sounds weird to
naxsi, triggering an internal rule. You can whitelist it as any other rule.
Original comment by ori...@gmail.com
on 6 Apr 2013 at 12:54
Original issue reported on code.google.com by
ser...@galkin.me
on 4 Apr 2013 at 11:52