找回密码
 立即注册
搜索
热搜: 活动 交友 discuz
查看: 10|回复: 1

请教Cloudflare的WAF防火墙Package: OWASP ModSecurity Core Rule Set作用

[复制链接]

11

主题

30

回帖

95

积分

注册会员

积分
95
发表于 2015-10-17 23:16:01 | 显示全部楼层 |阅读模式
What is OWASP?

This package consists of rulesets derived from the OWASP ModSecurity Core Rule Set. These provide an easily pluggable set of generic attack detection rules that provide a base level of protection for any web application.

The OWASP rules operate in scoring threshold mode: each match against a rule increases the threat score of that request. Once a request exceeds a configurable sensitivity threshold (off, low, or high), the action is taken. This action can be simulate (create a log entry but do not block the request), challenge (present the user with an in-browser challenge page, and log), or block (reject the request and log).

Individual rule groups within the OWASP package can be enabled or disabled in "rule details", after which rules can be managed at the individual rule level through the advanced option.
回复

使用道具 举报

199

主题

1714

回帖

4093

积分

论坛元老

积分
4093
发表于 2015-10-17 23:34:49 | 显示全部楼层
比较直白的翻译——web漏洞防御。
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

Archiver|手机版|小黑屋|Discuz! X

GMT+8, 2025-1-31 17:10 , Processed in 0.017967 second(s), 4 queries , Gzip On, Redis On.

Powered by Discuz! X3.5

© 2001-2024 Discuz! Team.

快速回复 返回顶部 返回列表