Skip to main content

ModSecurity false-positive with ConfigServer cXs ModSecurity rule

Comments

3 comments

  • GOT
    Only thing to do really is disable the rule that is triggering the false positive. Go to modsecurity tools, and search the logs for the IP that is causing the hit, then use the rule number to search in the rules list and there you can disable the rule.
    0
  • keat63
    Mod security doesn't work for everyone straight out of the box. I guess each domain/server is different. Different software etc may trigger different results. I agree with @GOT You'll probably have to disable a few rules to fine tune it for your needs.
    0
  • cPanelLauren
    As has been said already, like almost everything ModSecurity and custom rulesets need to be tweaked to suite your preferences. You may want to contact ConfigServer for issues with their ruleset as well.
    0

Please sign in to leave a comment.