Skip to main content

EA4: mod_php (dso) / mod_security2 + mod_ruid2

Comments

8 comments

  • JacobPerkins
    Hi, We're having a bit of trouble with DSO at the moment due to the naming schema with Apache internals. We have an open case on this (EA-3711) and we're got this on our task board at the moment and are working on this. In regards to mod_security and ruid2/ITK, these are not compatible. ModSec generally works with these, however it cannot read nor write to the DBM files that are required for tracking. Due to this, we've added RPM conflicts until we have time to look into making this compatible. Let me know if this answers your questions. Also, Thanks for trying out EA4 and providing feedback!
    0
  • mhofer
    Hi Jacob, this indeed answers all of my questions. Thank you very much.
    0
  • dalem
    I noticed it to when messing with a DEV box we work around the "cannot read nor write to the DBM" with some custom scripts to clean up the DBM mess. I did not test ea4 extensively as it seems its not production ready is there a work around to install Modsecuity with Mod Ruid2
    0
  • cPanelMichael
    is there a work around to install Modsecuity with Mod Ruid2

    There's no workaround at this time. Discussion about this topic is found at: Mod RUID 2 and ModSecurity Thank you.
    0
  • sonicthoughts
    If modruid2 is not going to work, then please get ITK to work with EA3 + EA4 and latest apache 2.4.
    0
  • cPanelMichael
    If modruid2 is not going to work, then please get ITK to work with EA3 + EA4 and latest apache 2.4.

    Is mod_mpm_itk for Apache 2.4 not working with EasyApache 4 on your system? Thank you.
    0
  • quizknows
    In regards to mod_security and ruid2/ITK, these are not compatible. ModSec generally works with these, however it cannot read nor write to the DBM files that are required for tracking. Due to this, we've added RPM conflicts until we have time to look into making this compatible.

    At the risk of sounding rude, most rules don't use DBM files anyway. You still get the majority of protections from the major rule sets even without being able to use collections. Hopefully this is resolved quickly regardless :)
    0
  • JacobPerkins
    Hello, I wanted to let you know we've removed the conflict and adjusted configurations to get both RUID2 and ModSec2 working. This doesn't solve the DBM issues, but the conflict is gone. I'm syncing these packages to the mirrors now. In an hour or two yum update and you'll get the updates. Thanks!
    0

Please sign in to leave a comment.