Re: [mod-security-users] IS this firewall code bullet proof
Brought to you by:
victorhora,
zimmerletw
|
From: joe b. <joe...@ya...> - 2006-04-15 23:55:30
|
Hay it's all yours, run with it and make it happen or not.
Write it up any way you want.
Calling mod_security a firewall is a great stretch of the truth. A pet hobby of yours is more to the point.
Since this is hosted by sourceforge I though it was a public group development project. Seems I was wrong in that.
The current manual is useless and is an embarrassment coming from some one with your professional background. I seen high school kids write more informative computer software documentation. There is no excuse for this. No need to write a book or create an updated version until you have usable documentation. Invest your time where it will be most useful.
Now I understand why I could not find any one who uses it when asked on different UNIX-like system questions lists.
After reading your repeated references to your upcoming book. Publishing poor public documentation as a way to entice people to purchase this book is not the way to market your talents.
That's the conclusions I have come to from this exchange of emails.
I know a dead end when I bump into it.
You can lead a stubborn horse to water but you can't make it drink.
Leaving the list now never to return
Ivan Ristic <iva...@gm...> wrote:
I appreciate your entusiasm but I am afraid your addition is not going
to make it into the manual. There are several reasons for this. A
major one is that I simply disagree with your statement that
ModSecurity has a "default usage strategy". ModSecurity is just a tool
that you can use one way or another.
Secondly, the advice you are giving in the text simply does not work.
I wish I had the time to explain every single problem in there but I
simply don't. Sorry. And it certainly isn't helping that you are
ignoring the advice I am giving you (see below).You can learn these
things by yourself
but you'd have to learn much more about HTTP and do
a lot of testing.
I said the same thing in the manual documantation I wrote as a reason why mod_security can not be used by normal apache admin people. Thanks for making my point in your own words.
I saw no need to wast more time changing what was all ready written so I did not correct it per your advice.
---------------------------------
How low will we go? Check out Yahoo! Messengers low PC-to-Phone call rates. |