Search results

  1. D

    mod_security REQUEST_HEADERS:Referer anomaly/bug

    Yes you are right, it is worked now. Thank you so much for helps!
  2. D

    mod_security REQUEST_HEADERS:Referer anomaly/bug

    Hi George, The content of 'spam-domains.txt' is any of TLD/SLD domain. For an example : store\.litespeedtech\.com So any access to litespeedtech.com which was refered from store.litespeedtech.com will trigger mod_security to deny. The value or rule is as usual : SecRule...
  3. D

    mod_security REQUEST_HEADERS:Referer anomaly/bug

    Dear LiteSpeed, I'm using LSWS 5.4.10 (build 4) on Cpanel. I found if using : SecRule REQUEST_HEADERS:Referer|ARGS "spam-domains\.com" Will work. But if using @pmFromFile operator : SecRule REQUEST_HEADERS:Referer|ARGS "@pmFromFile spam-domains.txt" Will not work. So REQUEST_HEADERS:Referer...
  4. D

    [LiteSpeed 5.1.9 build 1] error

    [UPDATE] This issue were caused by invalid net mask value (mine) inside of ACL configuration at server level. Solved nicely by George :) Thanks!
  5. D

    [LiteSpeed 5.1.9 build 1] error

    hi George, I've done submit ticket regarding to this issue hoping so much for your direct investigation into the server, thanks!
  6. D

    [LiteSpeed 5.1.9 build 1] error

    hi George, thanks for build 2 I just tried that but it still performed the same error swicth back again to 5.1.8
  7. D

    [LiteSpeed 5.1.9 build 1] error

    Here are the logs after upgrade to build 1, if needed : 2016-10-01 20:02:08.720 [NOTICE] [Child: 27355] Setup swapping space... 2016-10-01 20:02:08.720 [NOTICE] [child: 27355] Successfully change current user to nobody 2016-10-01 20:02:08.720 [NOTICE] [Child: 27355] Core dump is enabled...
  8. D

    [LiteSpeed 5.1.9 build 1] error

    Most of my servers suddenly get down after upgrade to 5.1.9 build 1 Since it is not possible to revert to 5.1.9 build 0, so I revert the version to 5.1.8 to make LiteSpeed webservers online again Would you mind to check into this 5.1.9 build 1? Thanks!
  9. D

    [Resolved] [LiteSpeed 5.8 build 1-2] error 505

    update, pardon me for the thread subject the correct subject supossed to be [LiteSpeed 5.1.8 build 1-2] error 505
  10. D

    [Resolved] [LiteSpeed 5.8 build 1-2] error 505

    today my customer site receive an error 505 as bellow : ------------------------------------------------------- ------------------------------------------------------- I am using CENTOS 6.8 x86_64 and CPanel reverting back to 5.1.7 instantly cured that error 505 issue
  11. D

    [LSWS 5.0.x] Compile PHP Error

    Since LSWS 5.0.x I've always stuck with these error mesage while compiling php with LSAPI : **MAIN_STATUS** retrieved from /usr/local/lsws/phpbuild/buildphp_1438651576.5.progress Preparing all source code for building PHP 5.3.29 with LSAPI 6.8 Retrieving PHP source archive from...
  12. D

    LSWS 4.2.23 VS mod_security

    Update : Just did test and found the rule is currently worked. But LiteSpeed seems cannot understand if I add "redirect:" option : #### SecRule REQUEST_URI "/any-folder/.+/filename.\php" "id:20202020,rev:1,severity:2,msg:'must be denied',deny,redirect:http://www.litespeedtech.com" \ #### So...
  13. D

    LSWS 4.2.23 VS mod_security

    Latest 4.2.23 build won't block with this simple rule : #### SecRule REQUEST_URI "/any-folder/.+/filename.\php" "id:20202020,rev:1,severity:2,msg:'must be denied',deny" \ #### Please fix it :(
  14. D

    CENTOS 6.5 Load Averages: 13.56 14.99 17.57

    CMIIW, I thought it was because of bad habit of XenForo that using MySQL delayed_thread as their default pre-enabled option. >> http://xenforo.com/community/threads/delayed-mysql-queries.44450/ >> http://google.com/#q=xenforo mysql delayed thread issue It should be disabled forever from...
  15. D

    [Resolved]lsws + mod_geoip + modsec = fail

    Wonderful! It's now works like heaven! So many thanks, George!
  16. D

    [Resolved]lsws + mod_geoip + modsec = fail

    Hi George, I have use this rule to test : SecGeoLookupDb /usr/local/share/GeoIP/GeoIP.dat SecRule REQUEST_URI "/asu.php" "chain,drop,log,msg:'Non-CA',ID:69696999" SecRule REMOTE_ADDR "@geoLookup" "chain" SecRule ENV:GEOIP_COUNTRY_CODE "!@streq CA" "t:none" And also this : <IfModule...
  17. D

    [Resolved]lsws + mod_geoip + modsec = fail

    What kind of complete rule that suppose to use to make this work?
  18. D

    scotch-tape on your back

    scotch-tape on your back
  19. D

    [Resolved]lsws + mod_geoip + modsec = fail

    By the way, congratulations for your new web and forum interface :)
  20. D

    [Resolved]lsws + mod_geoip + modsec = fail

    Hi george, thank you for update. Would you mind to write down your exact rule that were works at your labs so I can try that also? Because mine won't work until now.
Top