lp:~sam-hobbs/ams-whitelisting-tools/trunk

Created by Sam Hobbs and last modified
Get this branch:
bzr branch lp:~sam-hobbs/ams-whitelisting-tools/trunk

Related bugs

Related blueprints

Branch information

Owner:
Sam Hobbs
Project:
Whitelisting Tools for ModSecurity
Status:
Development

Import details

Import Status: Reviewed

This branch is an import of the HEAD branch of the Git repository at https://github.com/sam-hobbs/ams-whitelisting-tools.git.

The next import is scheduled to run .

Last successful import was .

Import started on juju-98ee42-prod-launchpad-codeimport-3 and finished taking 15 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-5 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-4 and finished taking 15 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-1 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-5 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-4 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-3 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-2 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-3 and finished taking 10 seconds — see the log
Import started on juju-98ee42-prod-launchpad-codeimport-4 and finished taking 15 seconds — see the log

Recent revisions

34. By Sam Hobbs

another modification to debian control file

33. By Sam Hobbs

change package name in debian control file

32. By Sam Hobbs

added gbp buildpackage config file

31. By Sam Hobbs

initial debian files for building with git-buildpackage

30. By Sam Hobbs

modified views sql file

29. By Sam Hobbs

Modified http referer header regex to account for "official" misspelling
Added more views

28. By Sam Hobbs

Fixed a bug in message splitting process where message IDs with 7
digits were not treated as separate rules

27. By Sam Hobbs

Added checking so error messages about rules not in the rule data configuration file are only printed once per rule ID

Split messages into parts related to each rule data configuration file and store them separately in table H.

26. By Sam Hobbs

All rule ID tables are now created based on user input in rulesdata.conf
Fixed a bug where internal dummy connections where the IP address is ::1 weren't matching the regex for extracting unique id, ports and ip addresses
Added views.sql file, which can be run to create views for whitelisting

25. By Sam Hobbs

Added new data structure for user input to improve code readability and make it easier to remove hard-coded rule ID data in the future.

Improved crs_to_rulesdata.pl perl script to more reliably extract data for SecRule statements by inspecting whether they start a chain or not.
script now extracts different data about rules: instead of severity, all scores including anomaly score, sql score etc. are extracted

Previous version of auditlog2db incorrectly calculated total severity of all rules matched, should have been counting anomaly scores since
this is how the CRS decides which requests to block.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
This branch contains Public information 
Everyone can see this information.

Subscribers