Procházet zdrojové kódy

Excludes WAF rules that are blocking legit traffic for Cust SH

To be tagged v4.3.10
Fred Damstra [afs macbook] před 3 roky
rodič
revize
3cf06ff404
1 změnil soubory, kde provedl 4 přidání a 2 odebrání
  1. 4 2
      base/splunk_servers/customer_searchhead/waf.tf

+ 4 - 2
base/splunk_servers/customer_searchhead/waf.tf

@@ -14,12 +14,14 @@ module "waf" {
 
   excluded_rules_AWSManagedRulesCommonRuleSet = [
     "SizeRestrictions_BODY",
+    "SizeRestrictions_QUERYSTRING",
     "RestrictedExtensions_URIPATH",
     "EC2MetaDataSSRF_BODY",
-    "GenericLFI_BODY"
+    "GenericLFI_BODY",
   ]
   excluded_rules_AWSManagedRulesSQLiRuleSet = [
-    "SQLi_QUERYARGUMENTS"
+    "SQLi_QUERYARGUMENTS",
+    "SQLi_BODY",
   ]
 
   # These are passed through and should be the same for module