Thread: [mod-security-users] Waf2Py Modsecurity v3
Brought to you by:
victorhora,
zimmerletw
|
From: Christian V. <cv...@it...> - 2019-01-31 05:44:07
Attachments:
pEpkey.asc
|
Hello all,
We are happy to release the new version of Waf2Py, this version works
with the new modsecurity and nginx connector.
*What can I do with this interface?*
* Create a site in just minutes,
* Create global or local exclusions with just 2 clicks!
* Add virtual interfaces
* Create static routes for the desired app.
* Check debug, access, error and audit logs in a easy way,
* Download logs
* Check the stats for every application with nice graphics
* Disable/Enable protection with just 1 click.
* Restrict paths or files.
* Insert headers.
* Change configurations
_*About this bundle*_
* Tested in Debian 9 (No docker).
* Components for this build:
o Waf2Py App
o Web2Py 2.17.2
o Nginx version: openresty-1.13.6.2
o ModSecurity v3 - libsecurity;
o Modsecurity Nginx connector
o OWASP ModSecurity Core Rule Set (CRS)
Download
http://www.waf2py.org
https://github.com/ITSec-Chile/Waf2Py
Some screenshots
https://imgur.com/a/px1T0nY
* We invite you guys to test and support this development to make
something powerful and free.
* If something is not working please let me know in GitHub
*Note 1*: By now not all options of nginx and modsecurity are
implemented with nice switches. Advanced configurations can be made
throught the "expert configuration" tab.
*Note 2*: Due to nginx connector is still being improved, maybe not all
functions works as expected, but with the time this will be better and
better.
Cheers!
Chris.
|
|
From: Christian F. <chr...@ne...> - 2019-01-31 06:44:38
|
Congratulations for this new release Christian. I'm planning to give it a spin next week. Cheers, Christian On Thu, Jan 31, 2019 at 02:15:28AM -0300, Christian Varas wrote: > Hello all, > > We are happy to release the new version of Waf2Py, this version works > with the new modsecurity and nginx connector. > > *What can I do with this interface?* > > * Create a site in just minutes, > * Create global or local exclusions with just 2 clicks! > * Add virtual interfaces > * Create static routes for the desired app. > * Check debug, access, error and audit logs in a easy way, > * Download logs > * Check the stats for every application with nice graphics > * Disable/Enable protection with just 1 click. > * Restrict paths or files. > * Insert headers. > * Change configurations > > _*About this bundle*_ > > * Tested in Debian 9 (No docker). > > * Components for this build: > o Waf2Py App > o Web2Py 2.17.2 > o Nginx version: openresty-1.13.6.2 > o ModSecurity v3 - libsecurity; > o Modsecurity Nginx connector > o OWASP ModSecurity Core Rule Set (CRS) > > > Download > http://www.waf2py.org > https://github.com/ITSec-Chile/Waf2Py > > Some screenshots > > https://imgur.com/a/px1T0nY > > * We invite you guys to test and support this development to make > something powerful and free. > * If something is not working please let me know in GitHub > > *Note 1*: By now not all options of nginx and modsecurity are > implemented with nice switches. Advanced configurations can be made > throught the "expert configuration" tab. > *Note 2*: Due to nginx connector is still being improved, maybe not all > functions works as expected, but with the time this will be better and > better. > > Cheers! > Chris. > > pub rsa4096 2018-11-01 [SC] [expires: 2025-11-01] > 41C003149D02EABA8D91DA719F943B49D75BA97C > uid Christian Varas <cv...@it...> > sub rsa4096 2018-11-01 [E] [expires: 2025-11-01] > _______________________________________________ > mod-security-users mailing list > mod...@li... > https://lists.sourceforge.net/lists/listinfo/mod-security-users > Commercial ModSecurity Rules and Support from Trustwave's SpiderLabs: > http://www.modsecurity.org/projects/commercial/rules/ > http://www.modsecurity.org/projects/commercial/support/ |
|
From: Christian V. <cv...@it...> - 2019-01-31 12:13:42
Attachments:
pEpkey.asc
|
Thanks, yes please, give it a try! Cheers. Chris. El 31-01-19 a las 03:44, Christian Folini escribió: > Congratulations for this new release Christian. I'm planning to give it a spin > next week. > > Cheers, > > Christian > > On Thu, Jan 31, 2019 at 02:15:28AM -0300, Christian Varas wrote: >> Hello all, >> >> We are happy to release the new version of Waf2Py, this version works >> with the new modsecurity and nginx connector. >> >> *What can I do with this interface?* >> >> * Create a site in just minutes, >> * Create global or local exclusions with just 2 clicks! >> * Add virtual interfaces >> * Create static routes for the desired app. >> * Check debug, access, error and audit logs in a easy way, >> * Download logs >> * Check the stats for every application with nice graphics >> * Disable/Enable protection with just 1 click. >> * Restrict paths or files. >> * Insert headers. >> * Change configurations >> >> _*About this bundle*_ >> >> * Tested in Debian 9 (No docker). >> >> * Components for this build: >> o Waf2Py App >> o Web2Py 2.17.2 >> o Nginx version: openresty-1.13.6.2 >> o ModSecurity v3 - libsecurity; >> o Modsecurity Nginx connector >> o OWASP ModSecurity Core Rule Set (CRS) >> >> >> Download >> http://www.waf2py.org >> https://github.com/ITSec-Chile/Waf2Py >> >> Some screenshots >> >> https://imgur.com/a/px1T0nY >> >> * We invite you guys to test and support this development to make >> something powerful and free. >> * If something is not working please let me know in GitHub >> >> *Note 1*: By now not all options of nginx and modsecurity are >> implemented with nice switches. Advanced configurations can be made >> throught the "expert configuration" tab. >> *Note 2*: Due to nginx connector is still being improved, maybe not all >> functions works as expected, but with the time this will be better and >> better. >> >> Cheers! >> Chris. >> >> pub rsa4096 2018-11-01 [SC] [expires: 2025-11-01] >> 41C003149D02EABA8D91DA719F943B49D75BA97C >> uid Christian Varas <cv...@it...> >> sub rsa4096 2018-11-01 [E] [expires: 2025-11-01] > >> _______________________________________________ >> mod-security-users mailing list >> mod...@li... >> https://lists.sourceforge.net/lists/listinfo/mod-security-users >> Commercial ModSecurity Rules and Support from Trustwave's SpiderLabs: >> http://www.modsecurity.org/projects/commercial/rules/ >> http://www.modsecurity.org/projects/commercial/support/ > > > _______________________________________________ > mod-security-users mailing list > mod...@li... > https://lists.sourceforge.net/lists/listinfo/mod-security-users > Commercial ModSecurity Rules and Support from Trustwave's SpiderLabs: > http://www.modsecurity.org/projects/commercial/rules/ > http://www.modsecurity.org/projects/commercial/support/ |