matrix-docker-ansible-deploy icon indicating copy to clipboard operation
matrix-docker-ansible-deploy copied to clipboard

ModSecurity for public facing NGINX web server

Open brookwarren opened this issue 3 years ago • 1 comments

This is a general query of interest for implementing ModSecurity v3 (Libmodsecurity) for the public facing NGINX web server that sits in front of all other services.

Among other capabilities, this would make it possible to provide a Web Application Firewall (WAF) that implements the basic OWASP ruleset that can inspect and react to traffic on the decrypted side of the SSL certificate termination.

This came up as a concern due to the amount of attacks and attack patterns I see hit my matrix instance that would be blocked by a WAF.

brookwarren avatar May 07 '21 19:05 brookwarren

+1

natecovington avatar Jul 14 '22 03:07 natecovington