Looks like your APR libs are mismatched. You need to ensure that both Apache and ModSecurity use that same version.  

Ryan Barnett

Lead Security Researcher, SpiderLabs

 

Trustwave | SMART SECURITY ON DEMAND

www.trustwave.com


On Dec 16, 2013, at 6:06 AM, "Yogesh patel" <yogeshpateldaiict@gmail.com> wrote:

HI

In Mod Security, @rx (Regular Expression) is not working.

Is this due to any dependencies?

My error logs are like below:

[mpm_winnt:notice] [pid 8396:tid 384] AH00418: Parent: Created child process 6672
[ssl:warn] [pid 6672:tid 396] AH01906: RSA server certificate is a CA certificate (BasicConstraints: CA == TRUE !?)
[:notice] [pid 6672:tid 396] ModSecurity for Apache/2.7.5 (http://www.modsecurity.org/) configured.
[:notice] [pid 6672:tid 396] ModSecurity: APR compiled version="1.4.8"; loaded version="1.5.0"
[:warn] [pid 6672:tid 396] ModSecurity: Loaded APR do not match with compiled!
[:notice] [pid 6672:tid 396] ModSecurity: PCRE compiled version="8.33 "; loaded version="8.33 2013-05-28"
[:notice] [pid 6672:tid 396] ModSecurity: LUA compiled version="Lua 5.1"
[:notice] [pid 6672:tid 396] ModSecurity: LIBXML compiled version="2.9.1"
[ssl:warn] [pid 6672:tid 396] AH01906: RSA server certificate is a CA certificate (BasicConstraints: CA == TRUE !?)
[mpm_winnt:notice] [pid 6672:tid 396] AH00354: Child: Starting 1000 worker threads.


--


Regards,

Yogesh Patel


------------------------------------------------------------------------------
Rapidly troubleshoot problems before they affect your business. Most IT
organizations don't have a clear picture of how application performance
affects their revenue. With AppDynamics, you get 100% visibility into your
Java,.NET, & PHP application. Start your 15-day FREE TRIAL of AppDynamics Pro!
http://pubads.g.doubleclick.net/gampad/clk?id=84349831&iu=/4140/ostg.clktrk
_______________________________________________
mod-security-users mailing list
mod-security-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/mod-security-users
Commercial ModSecurity Rules and Support from Trustwave's SpiderLabs:
http://www.modsecurity.org/projects/commercial/rules/
http://www.modsecurity.org/projects/commercial/support/



This transmission may contain information that is privileged, confidential, and/or exempt from disclosure under applicable law. If you are not the intended recipient, you are hereby notified that any disclosure, copying, distribution, or use of the information contained herein (including any reliance thereon) is strictly prohibited. If you received this transmission in error, please immediately contact the sender and destroy the material in its entirety, whether in electronic or hard copy format.