Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 22 Jan 2019 14:03:02 -0500
From:      Matt Garber <matt.garber@gmail.com>
To:        Gregory Byshenk <freebsd@byshenk.net>, SoftwareInforJam <softwareinforjam@gmail.com>
Cc:        "freebsd-stable@freebsd.org" <freebsd-stable@freebsd.org>
Subject:   Re: Issue with mod_security3
Message-ID:  <6F9FCA4E-1368-4122-8EBC-5389B90C7FFB@gmail.com>
In-Reply-To: <20190122185438.GC85865@v1.leiden.byshenk.net>
References:  <5c4744cd.1c69fb81.7b84f.5450@mx.google.com> <20190122185438.GC85865@v1.leiden.byshenk.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Jan 22, 2019, at 1:54 PM, Gregory Byshenk <freebsd@byshenk.net> =
wrote:
>=20
> On Tue, Jan 22, 2019 at 11:29:01AM -0500, SoftwareInforJam wrote:
>=20
>> I am have a queer problem with the port mod_security3. I
>> actually want to set it up to work with NGINX. The port
>> /usr/ports/www/mod_security3 exists but when I do a=20
>> # pkg install mod_security3=20
>> I get=20
>> ???pkg: No packages available to install matching 'mod_security3'
>> have been found in the repositories???
>>=20
>> When I do a pkg search ???mod_security*??? only
>> ap24-mod_security-2.9.2_3 Intrusion detection and prevention
>> engine. So only version 2.9 shows up. Not sure why this is
>> happening. Can anyone shed some light on this please?
>=20
> I'm no expert on mod_security, but my guess, based on reading
> https://www.linuxjournal.com/content/modsecurity-and-nginx,
> is that previous (to v3) versions of mod_security worked
> _only_ with apache.
>=20
> And it seems likely that the port has not yet been updated to
> the newest v3.
>=20
> Also based on the article, it seems that getting even mod_security
> v3 to work with nginx is slightly complicated, as building it
> depends on the specific version of nginx that is installed.

ModSecurity 3 =E2=80=93 working natively with nginx =E2=80=93 is =
significantly different than prior versions, although in this case I =
think it=E2=80=99s merely a matter of not searching for the correct =
package name: here are the two packages (not ports) available =E2=80=93 =
note the name change for v3. You=E2=80=99ll need to install =
=E2=80=98modsecurity3=E2=80=99 via packages for that version. (Your =
search for mod_security* was too restrictive and didn=E2=80=99t show you =
the v3 package, since it omits the underscore.)

$ pkg search mod | grep security

ap24-mod_security-2.9.2_3      Intrusion detection and prevention engine
modsecurity3-3.0.3_1           Intrusion detection and prevention engine


Thanks,
=E2=80=94
Matt Garber





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?6F9FCA4E-1368-4122-8EBC-5389B90C7FFB>