Güvenlik » Güvenlik Makaleler

mod_security kurulumu

http://forum.whmdestek.com/

Go Back   WHM/cPanel Support Platform » Türkçe » Site, Sunucu Sorunlarınız ve Çözümleri » Güvenlik » Güvenlik Makaleler
 
Extreme yoksa Sayyac var!
Ücretsiz İstatistik Servisi
Sayyac.com
Reklam Alın!
Günlük 5k tekil ve üzeri sitelerinize reklam!
Fixreklam
Firma tanıtımı!
Firmanızın reklamını hemen yapın!
Reklamlar

Reply
 
LinkBack (3) Thread Tools Display Modes
  #11  
Old 10.11.07, 17:15
Tickhi's Avatar
Athlon Dual Core
 
Join Date: Jul 2007
Location: Bulgaria
Posts: 368
Rep Power: 6
Tickhi is just really niceTickhi is just really niceTickhi is just really niceTickhi is just really niceTickhi is just really nice
Send a message via MSN to Tickhi Send a message via Yahoo to Tickhi Send a message via Skype™ to Tickhi
Quote:
Originally Posted by Fesih BICER View Post
Aşağıdaki komutlar şimdilik yeterlidir. yeni exploitler çıkarsa bakıp listeyi güncellerim.

Code:
<IfModule mod_security.c>
SecFilterEngine On
SecFilterCheckURLEncoding Off
SecFilterCheckUnicodeEncoding Off
SecFilterForceByteRange 0 255
SecAuditEngine RelevantOnly
SecAuditLog logs/audit_log
SecFilterDebugLog logs/modsec_debug_log
SecFilterDebugLevel 0
SecFilterDefaultAction "deny,log,status:406"
SecFilterSelective REMOTE_ADDR "^127.0.0.1$" nolog,allow
Secfilter "sbin/"
SecFilter "eggz"
SecFilter "eggdrop"
SecFilter "psybnc"
SecFilter "udp.pl"
SecFilter "bindtty"
Include "/usr/local/apache/conf/modsec.user.conf"
SecFilterSelective THE_REQUEST "act=cmd"
SecFilterSelective THE_REQUEST "yshout"
SecFilterSelective THE_REQUEST "toplist"
SecFilterSelective THE_REQUEST "button.php"
SecFilterSelective THE_REQUEST "vbshout"
SecFilterSelective THE_REQUEST "act=tools"
SecFilterSelective THE_REQUEST "act=gof"
SecFilterSelective THE_REQUEST "act=ls"
SecFilterSelective THE_REQUEST "act=mk"
SecFilterSelective THE_REQUEST "act=f&"
SecFilterSelective THE_REQUEST "r57"
SecFilterSelective THE_REQUEST "c99"
SecFilterSelective THE_REQUEST "root"
SecFilterSelective THE_REQUEST "chmod"
SecFilterSelective THE_REQUEST "cmd="
SecFilterSelective THE_REQUEST "rush="
SecFilterSelective THE_REQUEST "union"
SecFilterSelective THE_REQUEST "UNION"
SecFilterSelective THE_REQUEST "echr"
SecFilterSelective THE_REQUEST "cp%20"
SecFilterSelective THE_REQUEST "mdir%20"
SecFilterSelective THE_REQUEST "mcd%20"
SecFilterSelective THE_REQUEST "mrd%20"
SecFilterSelective THE_REQUEST "rm%20"
SecFilterSelective THE_REQUEST "mv%20"
SecFilterSelective THE_REQUEST "rmdir"
SecFilterSelective THE_REQUEST "chown"
SecFilterSelective THE_REQUEST "chgrp"
SecFilterSelective THE_REQUEST "locate"
SecFilterSelective THE_REQUEST "grep"
SecFilterSelective THE_REQUEST "diff"
SecFilterSelective THE_REQUEST "passwd"
SecFilterSelective THE_REQUEST "telnet"
SecFilterSelective THE_REQUEST "vi%20"
SecFilterSelective THE_REQUEST "INSERT%20INTO"
SecFilterSelective THE_REQUEST "SELECT%20"
SecFilterSelective THE_REQUEST "nigga"
SecFilterSelective THE_REQUEST "fopen"
SecFilterSelective THE_REQUEST "fwrite"
SecFilter '$path."*"'
</IfModule>
bunları whm panelinden mod security kısmındaki edit config e eklememiz ile olurmu
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #12  
Old 10.11.07, 19:07
Celeron
 
Join Date: Jul 2007
Posts: 65
Rep Power: 2
MaxiServer is on a distinguished road
Send a message via MSN to MaxiServer
Olur .....................
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #13  
Old 10.11.07, 19:37
Tickhi's Avatar
Athlon Dual Core
 
Join Date: Jul 2007
Location: Bulgaria
Posts: 368
Rep Power: 6
Tickhi is just really niceTickhi is just really niceTickhi is just really niceTickhi is just really niceTickhi is just really nice
Send a message via MSN to Tickhi Send a message via Yahoo to Tickhi Send a message via Skype™ to Tickhi
bu durumda apache açılmıyor yeniden başlattığım halde
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #14  
Old 10.11.07, 22:45
Celeron
 
Join Date: Jul 2007
Posts: 65
Rep Power: 2
MaxiServer is on a distinguished road
Send a message via MSN to MaxiServer
Include "/usr/local/apache/conf/modsec.user.conf"

Bu satırı sil kaydet.
Sonra tekrar dene
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #15  
Old 11.11.07, 00:44
Onursal's Avatar
fshbcr
 
Join Date: Jun 2007
Location: Çorlu
Age: 28
Posts: 638
Rep Power: 1092
Onursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond reputeOnursal has a reputation beyond repute
Send a message via MSN to Onursal
Eğer apache2x kullanıyorsanız MaxiServerin dediği gibi ilgili satırı kurallara arasından çıkarmalısınız.

SecAuditLog logs/audit_log
SecFilterDebugLog logs/modsec_debug_log

bunlarıda çıkarabilirsiniz
__________________
Deizm Agnostik
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #16  
Old 11.11.07, 20:45
Celeron
 
Join Date: Nov 2007
Posts: 97
Rep Power: 2
posinetti2000 is on a distinguished road
/etc/httpd/bin/apxs -cia mod_security.c bu komutu verdiğimde bana bole dosya veya dizin yok diye bir uayarı veriyor sorunum bu dosyanın bilgisayarımda yuklu olmaması galiba küçük bir araştırma yaptım ama nasıl bu dosyayı yuklryrğrğimi bulamadım. yardımlarınız için şimdiden tşkler .apache 2 kullanıyorum bu arada plesk panel 8.2.0 yuklu sistemimde linux dağıtımı olarak centos 4.5 yuklu
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #17  
Old 11.11.07, 20:49
Celeron
 
Join Date: Nov 2007
Posts: 97
Rep Power: 2
posinetti2000 is on a distinguished road
birde jomla smf vb gibi site yapma araşlarını kurduramadım sisteme çalişmiyorlar kurulum gerçekleşmiyor index.php veya install php yazıp girmeyi deniyorum yine çalişmiyorlar 0 diye bir dizin altına attım ordan denedim yine yok icraat acaba bu nedendir gerci koyduğum siteleride acmıyor sistem gidip pleskin default sayfanını açıyor
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #18  
Old 16.11.07, 02:28
Celeron
 
Join Date: Nov 2007
Posts: 97
Rep Power: 2
posinetti2000 is on a distinguished road
konu hakkında bilgisi olan yokmu
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #19  
Old 29.11.07, 10:15
Celeron
 
Join Date: Nov 2007
Posts: 97
Rep Power: 2
posinetti2000 is on a distinguished road
sorun çözülmüştür bu configleri dosya halinde ekli olarak koyabilirmisiniz buraya editlenmiş halde tşkler.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #20  
Old 29.11.07, 11:03
ANREhosting's Avatar
Celeron
 
Join Date: Nov 2007
Location: Ukraine
Age: 25
Posts: 55
Rep Power: 1
ANREhosting is on a distinguished road
Send a message via MSN to ANREhosting
modsecurity 406 hatasini gidermek icin ilgili hosting hesabinin .htaccess dosyasina $u kodu eklemeniz yeterli
niye httpd.conf dosyasinda degi$iklik yapiyorsunuz?
Code:
<IfModule mod_security.c>
SecFilterScanPOST Off
</IfModule>
__________________
ANREhosting Internet Servisleri
Hareketin bir parcasi olun!
Shared • Reseller • Managed VPS • ShoutCast
www.anrehosting.com
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

LinkBacks (?)
LinkBack to this Thread: http://forum.whmdestek.com/guvenlik-makaleleri/39-mod_security-kurulumu.html
Posted By For Type Date
Fedora apache2 Cpanel / whm de Mod security kurulumu ? - Webmaster Forum & Webmaster Okulu This thread Pingback 11.11.07 19:26
ipsconfig panel kurulumu - CMSTURK.NET CMS İYS Webmaster Forumları This thread Refback 08.11.07 20:52
r57 Önlem - Webmaster Zone This thread Pingback 07.07.07 18:59


Sign up for PayPal and start accepting credit card payments instantly.

Navigasyon
Menü