@@ -116,7 +116,7 @@ SecAction "id:9001100,\
116
116
#
117
117
SecRule REQUEST_FILENAME "@endsWith /core/install.php" \
118
118
"id:9001110,\
119
- phase:2 ,\
119
+ phase:1 ,\
120
120
pass,\
121
121
nolog,\
122
122
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:account[pass][pass1],\
@@ -125,7 +125,7 @@ SecRule REQUEST_FILENAME "@endsWith /core/install.php" \
125
125
126
126
SecRule REQUEST_FILENAME "@endsWith /user/login" \
127
127
"id:9001112,\
128
- phase:2 ,\
128
+ phase:1 ,\
129
129
pass,\
130
130
t:none,\
131
131
nolog,\
@@ -134,7 +134,7 @@ SecRule REQUEST_FILENAME "@endsWith /user/login" \
134
134
135
135
SecRule REQUEST_FILENAME "@endsWith /admin/people/create" \
136
136
"id:9001114,\
137
- phase:2 ,\
137
+ phase:1 ,\
138
138
pass,\
139
139
nolog,\
140
140
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:pass[pass1],\
@@ -143,7 +143,7 @@ SecRule REQUEST_FILENAME "@endsWith /admin/people/create" \
143
143
144
144
SecRule REQUEST_FILENAME "@rx /user/[0-9]+/edit$" \
145
145
"id:9001116,\
146
- phase:2 ,\
146
+ phase:1 ,\
147
147
pass,\
148
148
nolog,\
149
149
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:current_pass,\
@@ -165,15 +165,15 @@ SecRule REQUEST_FILENAME "@rx /user/[0-9]+/edit$" \
165
165
#
166
166
SecRule REQUEST_FILENAME "@contains /admin/config/" \
167
167
"id:9001122,\
168
- phase:2 ,\
168
+ phase:1 ,\
169
169
pass,\
170
170
nolog,\
171
171
ctl:ruleRemoveById=942430,\
172
172
ver:'OWASP_CRS/3.3.0'"
173
173
174
174
SecRule REQUEST_FILENAME "@endsWith /admin/config/people/accounts" \
175
175
"id:9001124,\
176
- phase:2 ,\
176
+ phase:1 ,\
177
177
pass,\
178
178
nolog,\
179
179
ctl:ruleRemoveById=920271,\
@@ -190,7 +190,7 @@ SecRule REQUEST_FILENAME "@endsWith /admin/config/people/accounts" \
190
190
191
191
SecRule REQUEST_FILENAME "@endsWith /admin/config/development/configuration/single/import" \
192
192
"id:9001126,\
193
- phase:2 ,\
193
+ phase:1 ,\
194
194
pass,\
195
195
nolog,\
196
196
ctl:ruleRemoveById=920271,\
@@ -199,7 +199,7 @@ SecRule REQUEST_FILENAME "@endsWith /admin/config/development/configuration/sing
199
199
200
200
SecRule REQUEST_FILENAME "@endsWith /admin/config/development/maintenance" \
201
201
"id:9001128,\
202
- phase:2 ,\
202
+ phase:1 ,\
203
203
pass,\
204
204
nolog,\
205
205
ctl:ruleRemoveById=942440,\
@@ -216,7 +216,7 @@ SecRule REQUEST_FILENAME "@endsWith /admin/config/development/maintenance" \
216
216
#
217
217
SecRule REQUEST_FILENAME "@endsWith /contextual/render" \
218
218
"id:9001140,\
219
- phase:2 ,\
219
+ phase:1 ,\
220
220
pass,\
221
221
nolog,\
222
222
ctl:ruleRemoveTargetById=942130;ARGS:ids[],\
@@ -251,7 +251,7 @@ SecAction "id:9001160,\
251
251
#
252
252
SecRule REQUEST_FILENAME "@endsWith /admin/config/content/formats/manage/full_html" \
253
253
"id:9001170,\
254
- phase:2 ,\
254
+ phase:1 ,\
255
255
pass,\
256
256
nolog,\
257
257
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:editor[settings][toolbar][button_groups],\
@@ -329,7 +329,7 @@ SecRule REQUEST_METHOD "@streq POST" \
329
329
#
330
330
SecRule REQUEST_FILENAME "@endsWith /node/add/article" \
331
331
"id:9001200,\
332
- phase:2 ,\
332
+ phase:1 ,\
333
333
pass,\
334
334
nolog,\
335
335
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:body[0][value],\
@@ -338,7 +338,7 @@ SecRule REQUEST_FILENAME "@endsWith /node/add/article" \
338
338
339
339
SecRule REQUEST_FILENAME "@endsWith /node/add/page" \
340
340
"id:9001202,\
341
- phase:2 ,\
341
+ phase:1 ,\
342
342
pass,\
343
343
nolog,\
344
344
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:body[0][value],\
@@ -347,7 +347,7 @@ SecRule REQUEST_FILENAME "@endsWith /node/add/page" \
347
347
348
348
SecRule REQUEST_FILENAME "@rx /node/[0-9]+/edit$" \
349
349
"id:9001204,\
350
- phase:2 ,\
350
+ phase:1 ,\
351
351
pass,\
352
352
nolog,\
353
353
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:body[0][value],\
@@ -357,47 +357,47 @@ SecRule REQUEST_FILENAME "@rx /node/[0-9]+/edit$" \
357
357
358
358
SecRule REQUEST_FILENAME "@endsWith /block/add" \
359
359
"id:9001206,\
360
- phase:2 ,\
360
+ phase:1 ,\
361
361
pass,\
362
362
nolog,\
363
363
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:body[0][value],\
364
364
ver:'OWASP_CRS/3.3.0'"
365
365
366
366
SecRule REQUEST_FILENAME "@endsWith /admin/structure/block/block-content/manage/basic" \
367
367
"id:9001208,\
368
- phase:2 ,\
368
+ phase:1 ,\
369
369
pass,\
370
370
nolog,\
371
371
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:description,\
372
372
ver:'OWASP_CRS/3.3.0'"
373
373
374
374
SecRule REQUEST_FILENAME "@rx /editor/filter_xss/(?:full|basic)_html$" \
375
375
"id:9001210,\
376
- phase:2 ,\
376
+ phase:1 ,\
377
377
pass,\
378
378
nolog,\
379
379
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:value,\
380
380
ver:'OWASP_CRS/3.3.0'"
381
381
382
382
SecRule REQUEST_FILENAME "@rx /user/[0-9]+/contact$" \
383
383
"id:9001212,\
384
- phase:2 ,\
384
+ phase:1 ,\
385
385
pass,\
386
386
nolog,\
387
387
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:message[0][value],\
388
388
ver:'OWASP_CRS/3.3.0'"
389
389
390
390
SecRule REQUEST_FILENAME "@endsWith /admin/config/development/maintenance" \
391
391
"id:9001214,\
392
- phase:2 ,\
392
+ phase:1 ,\
393
393
pass,\
394
394
nolog,\
395
395
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:maintenance_mode_message,\
396
396
ver:'OWASP_CRS/3.3.0'"
397
397
398
398
SecRule REQUEST_FILENAME "@endsWith /admin/config/services/rss-publishing" \
399
399
"id:9001216,\
400
- phase:2 ,\
400
+ phase:1 ,\
401
401
pass,\
402
402
nolog,\
403
403
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:feed_description,\
0 commit comments