Page 1 of 1

ModSecurity features in cPanel 11.46

Posted: 04 Nov 2014, 17:18
by aegis
11.46 adds ModSecurity features to WHM/cPanel which on the face of it seems like a great thing but is it?

Does it conflict with ConfigServer's ModSecurity Control?

Re: ModSecurity features in cPanel 11.46

Posted: 04 Nov 2014, 17:19
by ForumAdmin
It should not conflict at all.

Re: ModSecurity features in cPanel 11.46

Posted: 07 Jan 2016, 08:41
by Linuc
We make use of the ModSecurity feature and OWASP provided by cPanel.

We also make use of the ConfigServer ModSecurity Control.

The problem is that whitelisting is not working.

You can select an account -> modify user whitelist

And then add a rule from ModSecurity OWASP, like 970901

It will not ignore the rule and LFD will still block the user.

Re: ModSecurity features in cPanel 11.46

Posted: 03 Feb 2017, 15:45
by ethical
Appear to be having the same issue... 240335 comodo WAF xml rule is not whitelisting properly. latest versions of everything

any ideas?