Page 1 of 2 12 LastLast
Results 1 to 10 of 16

Thread: How to mod_security & mod_evasive Ubuntu 9.10

  1. #1
    Join Date
    Apr 2006
    Location
    Montana
    Beans
    Hidden!
    Distro
    Kubuntu Development Release

    How to mod_security & mod_evasive Ubuntu 9.10

    mod_security and mod_evasive are Apache Modules targeted at increasing Apache Security and are sometimes thought of as "application firewalls".

    mod_security is designed to screen out bad url requests (such as /etc/shadow) , mysql injection, etc.

    mod_evasive is designed to mitigate DOS and brute force attacks.

    Both modules were somewhat difficult to implement in the past, but are much easier in Ubuntu 9.04.

    I wrote a pair of blogs reviewing the installation :

    How to mod_evasive

    How to mod_security

    There are two mistakes one can make along the road to truth...not going all the way, and not starting.
    --Prince Gautama Siddharta

    #ubuntuforums web interface

  2. #2
    Join Date
    Mar 2007
    Location
    Denver, CO
    Beans
    7,726
    Distro
    Ubuntu Mate 16.04 Xenial Xerus

  3. #3
    Join Date
    Jun 2006
    Beans
    4
    Distro
    Ubuntu 9.04 Jaunty Jackalope

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    Awesome set of tutorials! Thanks for sharing.

  4. #4
    Join Date
    Feb 2008
    Location
    Cape Town, South Africa
    Beans
    Hidden!
    Distro
    Ubuntu 8.04 Hardy Heron

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    Although I agree using this code for 3rd party code that you install and in general all code you put on your server.

    This being said it is no excuse for bad coding to allow such requests! All script/applications that sit in a webserver should never even allow such absolute pathing and should allow serve up requests relevant to the current running website.

    Please do not think that having these mods enabled allow for bad security on a users part.

    (Great tuts on how to set them up, thanks bodhi)

  5. #5
    Join Date
    Aug 2006
    Location
    Somewhere in the hell
    Beans
    294
    Distro
    Ubuntu 12.04 Precise Pangolin

    Lightbulb Re: How to mod_security & mod_evasive Ubuntu 9.10

    For the modsecurity, the package that provided by Ubuntu 9.04 has DOS flaw. The up-to-date version of modsecurity is 2.5.9. You can download the deb packages at the official site of modsecurity (http://www.modsecurity.org/download/index.html).

    The download site is http://etc.inittab.org/~agi/debian/l...mod-security2/

    Download the packages
    For 32-bit system :
    For 64-bit system :
    Installation
    For 32-bit system :
    sudo dpkg -i mod-security-common_2.5.9-1_all.deb libapache-mod-security_2.5.9-1_i386.deb
    For 64-bit system :
    sudo dpkg -i mod-security-common_2.5.9-1_all.deb libapache-mod-security_2.5.9-1_amd64.deb
    That's all!
    Last edited by samiux; May 26th, 2009 at 02:48 PM.

  6. #6
    Join Date
    Jan 2008
    Beans
    29

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    I read somewhere that mod security could affect much the server performance. Is it worth installing?
    dfsdfgdfsdrgtrtdgstdrg

  7. #7

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    anyone tried this on an intel x64 platform yet?

  8. #8
    Join Date
    Apr 2006
    Location
    Montana
    Beans
    Hidden!
    Distro
    Kubuntu Development Release

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    Quote Originally Posted by joycejohnson View Post
    anyone tried this on an intel x64 platform yet?
    I have run it on a 64 bit platform
    There are two mistakes one can make along the road to truth...not going all the way, and not starting.
    --Prince Gautama Siddharta

    #ubuntuforums web interface

  9. #9
    Join Date
    Oct 2006
    Location
    Kingston, Canada
    Beans
    8
    Distro
    Ubuntu 9.10 Karmic Koala

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    I followed this tutorial in a round about way and got to the application of the mod_security configuration rules and I get multiple errors.

    Do I need to disable the mod before applying the rules? In the directed tutorial on the blog the insecure file still produces the same information although my server says the mod was installed. Is there any way to test further? The dpkg seemed to work the most error free.

    I figured it out. Apache2.conf had to be reconfigured to allow for additional folders to be considered for the mod_security rules.
    Last edited by im_an_elf; November 23rd, 2009 at 02:13 PM. Reason: update

  10. #10
    Join Date
    Nov 2008
    Beans
    76

    Re: How to mod_security & mod_evasive Ubuntu 9.10

    Doesn't work here with 9.10 -64bit

Page 1 of 2 12 LastLast

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •