Project

General

Profile

Actions

Feature #8090

open

Implement mod_security protection

Added by Lukas Zapletal over 9 years ago. Updated over 9 years ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Foreman modules
Target version:
-
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

Shellshock showed that IDS systems make lot of sense. Since Foreman deploys with Apache2 httpd by default, we could take advantage of the mod_security module to allow users to prevent from various attacks.

As an example, we could ship with brute-force rules for login form and token-based requests.

http://snippets.aktagon.com/snippets/563-brute-force-authentication-protection-with-modsecurity

Actions #1

Updated by Dominic Cleal over 9 years ago

  • Project changed from Foreman to Installer
  • Subject changed from Implement mod_sercurity protection to Implement mod_security protection
  • Category set to Foreman modules
Actions

Also available in: Atom PDF