Re: [mod-security-users] XML-Tags in HTTP GET
Brought to you by:
victorhora,
zimmerletw
|
From: Ivan R. <iv...@we...> - 2005-03-11 09:38:45
|
Thomas B=F6rnert wrote: > Hi List, >=20 > the next question, xml tags are matched by >=20 > SecFilter "<(.|\n)+>" >=20 > is there a solution to allow xml in GET and POST, > by hold the security? That depends on whether your application is vulnerable. What exactly are you trying to prevent with SecFilter "<(.|\n)+>"? --=20 Ivan Ristic Apache Security (O'Reilly) - http://www.apachesecurity.net Open source web application firewall - http://www.modsecurity.org |