Gentoo Packages /package/www-apache/mod_security http://www.gentoo.org/favicon.ico http://packages.gentoo.org/feed/package/www-apache/mod_security Gentoo Packages2 2009-11-24T19:36:42Z <div> <span class="cpvstr">www-apache/mod_security</span>: <span class="description">Web application firewall and Intrusion Detection System for Apache.</span> </div> http://packages.gentoo.org/package/www-apache/mod_security?ts=2009-11-21T13:13:47Z Diego E. Pettenò (flameeyes) http://cia.vc/stats/author/flameeyes 2009-11-21T13:13:47Z
*mod_security-2.5.11-r1 (21 Nov 2009)
21 Nov 2009; Diego E. Pettenò (flameeyes)
-mod_security-2.5.10-r1.ebuild, -mod_security-2.5.11.ebuild,
+mod_security-2.5.11-r1.ebuild,
+files/mod_security-2.5.11-disable-http-pollution.patch, metadata.xml:
Sanitising mod_security: add a vanilla USE flag that restores the original
upstream behaviour for the CRS, if disabled (default), then also disable
some pretty braindamaged rules. Add warnings about the original rules if
vanilla USE flag is enabled or if perl USE flag is enabled. Document in
metadata the new vanilla flag as well as the package-local meaning of the
perl USE flag. Remove older versions.