hi Greg,
thanks for reply, i will update my nginx to latest version, and test that.
Regards,
Yorkng
On Tue, Aug 14, 2012 at 3:26 PM, Greg Wroblewski <gwr...@ho...>wrote:
> I did not hit this bug, which makes me think that it is an nginx 1.1.20
> specific thing. We developed and briefly tested the module using nginx
> 1.2.0 (I will use 1.2.3 going forward).
>
> The numerous versions of nginx might be problematic in the long term, so
> IMHO we should always focus on the latest stable one.
>
> Regardless of the version issue, I think that the bug is worth fixing, it
> makes the module more robust.
>
> Greg
>
> > Date: Mon, 13 Aug 2012 18:23:46 +0800
> > From: yorkng zhuo <yor...@gm...>
> > Subject: [Mod-security-developers] simple GET request cause
> > ModSecurity nginx crash
> > To: mod...@li...
> > Message-ID:
> > <CAKV5U6=echSziA=h=7RVLGe7gaQd7tkeir=g+p...@ma...>
> > Content-Type: text/plain; charset="iso-8859-1"
> >
> > hello all,
> > i'm testing ModSecurity nginx at ubuntu 12.04, nginx version 1.1.20
> > when i use curl like this: curl http://localhost/secret, then the nginx
> > worker process crash. i use gdb debug it, trouble spots is here
> >
>
>
>
> ------------------------------------------------------------------------------
> Live Security Virtual Conference
> Exclusive live event will cover all the ways today's security and
> threat landscape has changed and how IT managers can respond. Discussions
> will include endpoint security, mobile security and the latest in malware
> threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/
> _______________________________________________
> mod-security-developers mailing list
> mod...@li...
> https://lists.sourceforge.net/lists/listinfo/mod-security-developers
> ModSecurity Services from Trustwave's SpiderLabs:
> https://www.trustwave.com/spiderLabs.php
>
--
Regards,
Yorkng
|