Patrick
October 18, 2019 03:00AM
On 2019-10-18 13:57, P.V.Anthony wrote:
> Like netsec and using "if" in the config.

The `if' part should be fine. The problem would be someone crafting a
URL that skips past the `=' check and yet is still parsed as `id=2' by
the underlying app.

Can the underlying old app also be changed to log an attack, and throw a
444 when it gets an `id' set to 2?



Patrick
_______________________________________________
nginx mailing list
nginx@nginx.org
http://mailman.nginx.org/mailman/listinfo/nginx
Subject Author Posted

How to do location /test/place?id=2

P.V.Anthony October 17, 2019 01:02PM

Re: How to do location /test/place?id=2

J. Lewis Muir October 17, 2019 05:16PM

Re: How to do location /test/place?id=2

jeffdyke October 17, 2019 05:28PM

Re: How to do location /test/place?id=2

P.V.Anthony October 18, 2019 12:04AM

Re: How to do location /test/place?id=2

J. Lewis Muir October 18, 2019 09:48AM

Re: How to do location /test/place?id=2

P.V.Anthony October 19, 2019 01:56AM

Re: How to do location /test/place?id=2

P.V.Anthony October 18, 2019 12:02AM

Re: How to do location /test/place?id=2

Aleksandar Lazic October 19, 2019 04:24AM

Re: How to do location /test/place?id=2

P.V.Anthony October 20, 2019 01:18AM

Re: How to do location /test/place?id=2

Patrick October 17, 2019 09:04PM

Re: How to do location /test/place?id=2

P.V.Anthony October 18, 2019 12:14AM

Re: How to do location /test/place?id=2

Patrick October 18, 2019 12:20AM

Re: How to do location /test/place?id=2

P.V.Anthony October 18, 2019 01:18AM

Re: How to do location /test/place?id=2

Patrick October 18, 2019 01:36AM

Re: How to do location /test/place?id=2

P.V.Anthony October 18, 2019 01:58AM

Re: How to do location /test/place?id=2

Patrick October 18, 2019 03:00AM

Re: How to do location /test/place?id=2

P.V.Anthony October 19, 2019 01:56AM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 272
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready