diff --git a/conf/modsecurity.conf b/conf/modsecurity.conf index 579d32d..8b0b235 100644 --- a/conf/modsecurity.conf +++ b/conf/modsecurity.conf @@ -15,6 +15,11 @@ SecRule ARGS "(?i)(['\"]|--|#|/\*|\*/)" \ SecRule ARGS "(?i)\b(select|insert|update|delete|drop|union|grant|alter|truncate)\b" \ "id:950002,phase:2,deny,status:403,msg:'SQL Injection: Keyword',log,t:urlDecode,t:lowercase" +# sql3 (teste) +SecRule ARGS|ARGS_NAMES|REQUEST_COOKIES|REQUEST_COOKIES_NAMES|REQUEST_HEADERS|XML:/*|JSON:/* \ + "(?i)(select\s|insert\s|update\s|delete\s|drop\s|union\s|--|#|/\*|\*/|'|\"|%27|%22|