summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorDiego Elio Pettenò <flameeyes@gentoo.org>2010-12-03 01:34:34 +0000
committerDiego Elio Pettenò <flameeyes@gentoo.org>2010-12-03 01:34:34 +0000
commitd14c1ced281695445eb283243dc42887024d7e1c (patch)
treedd6e6515e41ec63ffe6c03d1b05a71f409b0ca44 /www-apache
parentadd ~arm (bug 302981) (diff)
downloadgentoo-2-d14c1ced281695445eb283243dc42887024d7e1c.tar.gz
gentoo-2-d14c1ced281695445eb283243dc42887024d7e1c.tar.bz2
gentoo-2-d14c1ced281695445eb283243dc42887024d7e1c.zip
Add log about the recent changes in 2.0.9+ about blocking/scoring.
(Portage version: 2.2.0_alpha6/cvs/Linux x86_64)
Diffstat (limited to 'www-apache')
-rw-r--r--www-apache/modsecurity-crs/ChangeLog6
-rw-r--r--www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild10
2 files changed, 14 insertions, 2 deletions
diff --git a/www-apache/modsecurity-crs/ChangeLog b/www-apache/modsecurity-crs/ChangeLog
index ee9c29661e59..f6bb760a65ab 100644
--- a/www-apache/modsecurity-crs/ChangeLog
+++ b/www-apache/modsecurity-crs/ChangeLog
@@ -1,6 +1,10 @@
# ChangeLog for www-apache/modsecurity-crs
# Copyright 1999-2010 Gentoo Foundation; Distributed under the GPL v2
-# $Header: /var/cvsroot/gentoo-x86/www-apache/modsecurity-crs/ChangeLog,v 1.4 2010/12/01 21:38:02 flameeyes Exp $
+# $Header: /var/cvsroot/gentoo-x86/www-apache/modsecurity-crs/ChangeLog,v 1.5 2010/12/03 01:34:34 flameeyes Exp $
+
+ 03 Dec 2010; Diego E. Pettenò <flameeyes@gentoo.org>
+ modsecurity-crs-2.0.10.ebuild:
+ Add log about the recent changes in 2.0.9+ about blocking/scoring.
*modsecurity-crs-2.0.10 (01 Dec 2010)
diff --git a/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild b/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild
index 5bdbb41a67fd..14d971d38804 100644
--- a/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild
+++ b/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild
@@ -1,6 +1,6 @@
# Copyright 1999-2010 Gentoo Foundation
# Distributed under the terms of the GNU General Public License v2
-# $Header: /var/cvsroot/gentoo-x86/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild,v 1.1 2010/12/01 21:38:02 flameeyes Exp $
+# $Header: /var/cvsroot/gentoo-x86/www-apache/modsecurity-crs/modsecurity-crs-2.0.10.ebuild,v 1.2 2010/12/03 01:34:34 flameeyes Exp $
EAPI=2
@@ -64,4 +64,12 @@ pkg_postinst() {
elog
elog "If you want to enable further rules, check the following directory:"
elog " ${APACHE_MODULES_CONFDIR}/mod_security/optional_rules"
+ elog ""
+ elog "Starting from version 2.0.9, the default for the Core Rule Set is again to block"
+ elog "when rules hit. If you wish to go back to the 2.0.8 method of anomaly scoring, you"
+ elog "should change modsecurity_crs_10_config.conf so that you have these settings enabled:"
+ elog ""
+ elog " SecDefaultAction \"phase:1,pass\""
+ elog " SecAction \"phase:1,t:none,nolog,pass,setvar:tx.anomaly_score_blocking=on\""
+ elog ""
}