Christian Folini

Results 509 comments of Christian Folini

I am not sure this is what we want. How about URLs like `/app/index.php/connector/`. On a reverse proxy, this is part of the REQUEST_FILENAME. But I agree we need to...

This topics has been discussed in #924 and in a chat as well. Copying over the summary of the discussion: We talked about this for a great length during the...

This sounds very good. Is there anything we should do to make this work? Also: Would this be a moment, where we get in touch with any OWASP projects that...

Travis passing now. Thank you.

Here is a more elaborate explanation (taken from https://github.com/SpiderLabs/owasp-modsecurity-crs/pull/1688#issuecomment-586267561): According to RFCs, all of these 'Content-Type' headers are valid: ``` Content-Type: application/soap+xml Content-Type: application/soap+xml; charset=utf-8 Content-Type: application/soap+xml; charset=utf-8; action="urn:localhost-hwh#getQuestions" Content-Type:...

If only it would be merged ...

We can close this here, can't we?

True. I did not read it very carefully it seems. I got the impression it was a libinjection thing and I am a bit overwhelmed with the number of issues...

Decision during the CRS project chat on March 2, 2020: @dune73 will get in touch with the libinjection project to try and get things moving again. https://github.com/SpiderLabs/owasp-modsecurity-crs/issues/1683#issuecomment-593584538