Author Topic: Access Error  (Read 41453 times)

0 Members and 3 Guests are viewing this topic.

Offline
*
Access Error
« on: May 27, 2016, 10:19:45 PM »
Hello I can not access the page after I installed mod_security, put a folder in the account and will not appear ... :'( :'( :'( :'( :'(

http://imgur.com/v0PeP9q

Offline
*****
Re: Access Error
« Reply #1 on: May 28, 2016, 05:25:51 AM »
check the apache error log and find your ip, their will be a ID which you have to whitelist.

Offline
*
Re: Access Error
« Reply #2 on: May 28, 2016, 07:52:53 PM »
I did not understand, what to do?
where I find the logs?

Offline
*****
Re: Access Error
« Reply #3 on: May 29, 2016, 06:25:08 AM »
I did not understand, what to do?
where I find the logs?
/usr/local/apache/logs

Offline
*
Re: Access Error
« Reply #4 on: May 29, 2016, 04:10:51 PM »
okay, what should I look for?

Offline
*
Re: Access Error
« Reply #5 on: May 29, 2016, 04:13:11 PM »
Found it:

linhasmart.tk"] [uri "/"] [unique_id "V0necn8AAAEAABpbW@cAAAAG"]
"linhasmart.tk"] [uri "/"] [unique_id "V0n2AH8AAAEAABoPTEgAAAAF"]

Offline
*****
Re: Access Error
« Reply #6 on: May 29, 2016, 07:10:20 PM »
Not this one id will be like this id:200000

Offline
*
Re: Access Error
« Reply #7 on: May 29, 2016, 07:52:05 PM »
This
[id "970013"]

Offline
*
Re: Access Error
« Reply #8 on: May 29, 2016, 07:53:57 PM »
[Sun May 29 15:49:36 2016] [error] [client 186.209.253.230] ModSecurity: Access denied with code 403 (phase 4). Pattern match "(?:<(?:TITLE>Index of.*?<H|title>Index of.*?<h)1>Index of|>\\\\[To Parent Directory\\\\]<\\\\/[Aa]><br>)" at RESPONSE_BODY. [file "/usr/local/apache/modsecurity-crs/base_rules/modsecurity_crs_50_outbound.conf"] [line "136"] [id "970013"] [rev "2"] [msg "Directory Listing"] [data "Matched Data: <title>Index of /</title>\\x0a </head>\\x0a <body>\\x0a<h1>Index of found within RESPONSE_BODY: <!DOCTYPE HTML PUBLIC \\x22-//W3C//DTD HTML 3.2 Final//EN\\x22>\\x0a<html>\\x0a <head>\\x0a  <title>Index of /</title>\\x0a </head>\\x0a <body>\\x0a<h1>Index of /</h1>\\x0a<ul></ul>\\x0a</body></html>\\x0a"] [severity "ERROR"] [ver "OWASP_CRS/2.2.9"] [maturity "9"] [accuracy "9"] [tag "OWASP_CRS/LEAKAGE/INFO_DIRECTORY_LISTING"] [tag "WASCTC/WASC-13"] [tag "OWASP_TOP_10/A6"] [tag "PCI/6.5.6"] [hostname "linhasmart.tk"] [uri "/"] [unique_id "V0tH0H8AAAEAABpbXDEAAAAG"]

Offline
***
Re: Access Error
« Reply #9 on: May 29, 2016, 09:29:13 PM »
check the apache error log and find your ip, their will be a ID which you have to whitelist.

White listing his IP address works also.

Offline
*
Re: Access Error
« Reply #10 on: May 29, 2016, 09:31:33 PM »
I'm not understanding what you have to do

Offline
*****
Re: Access Error
« Reply #11 on: May 30, 2016, 12:01:20 AM »
Add it in  Disabled Rules --> /usr/local/apache/conf/mod_sec_disabled_rules.conf  (you can just click the link in the mod security section)
Add the rule id in the file SecRuleRemoveById  [the rule id you found] and click save changes.

Offline
*
Re: Access Error
« Reply #12 on: May 30, 2016, 12:28:19 AM »

Offline
*****
Re: Access Error
« Reply #13 on: May 30, 2016, 01:52:01 AM »
Yes

Offline
*
Re: Access Error
« Reply #14 on: May 30, 2016, 01:58:41 AM »
It works, but the folder does not appear ... something is missing?

http://imgur.com/bWD1hzW