coraza: reserve rule-ID range 990000000-990999999 for WHP-generated rules
This commit is contained in:
@@ -94,3 +94,12 @@ SecRuleUpdateActionById 930130 "ctl:ruleEngine=On"
|
|||||||
# (`session_start` literal appearing in billing form data)
|
# (`session_start` literal appearing in billing form data)
|
||||||
# 950xxx-953xxx — Data leakage / backup-file disclosure (mixed FP)
|
# 950xxx-953xxx — Data leakage / backup-file disclosure (mixed FP)
|
||||||
# ---------------------------------------------------------------------------
|
# ---------------------------------------------------------------------------
|
||||||
|
|
||||||
|
# ---------------------------------------------------------------------------
|
||||||
|
# RESERVED RULE-ID RANGE: 990000000 – 990999999
|
||||||
|
# WHP's coraza_rule_manager generates per-host-exception rules in this range
|
||||||
|
# (rule ID = 990000000 + target_rule_id). Do NOT add new rules in this range
|
||||||
|
# from any other source. When bumping the coraza-spoa pin, check the CRS
|
||||||
|
# changelog for new rules with 9-digit IDs (rare but possible) and re-namespace
|
||||||
|
# if collision risk emerges.
|
||||||
|
# ---------------------------------------------------------------------------
|
||||||
|
|||||||
Reference in New Issue
Block a user