|
2170 | 2170 | } |
2171 | 2171 |
|
2172 | 2172 | ## Create a global LocationMatch if locations aren't defined |
2173 | | - if $modsec_disable_ids { |
2174 | | - if $modsec_disable_ids =~ Array { |
2175 | | - $_modsec_disable_ids = { '.*' => $modsec_disable_ids } |
2176 | | - } else { |
2177 | | - $_modsec_disable_ids = $modsec_disable_ids |
2178 | | - } |
| 2173 | + if $modsec_disable_ids =~ Array { |
| 2174 | + $_modsec_disable_ids = { '.*' => $modsec_disable_ids } |
| 2175 | + } else { |
| 2176 | + $_modsec_disable_ids = $modsec_disable_ids |
2179 | 2177 | } |
2180 | 2178 |
|
2181 | | - if $modsec_disable_msgs { |
2182 | | - if $modsec_disable_msgs =~ Array { |
2183 | | - $_modsec_disable_msgs = { '.*' => $modsec_disable_msgs } |
2184 | | - } else { |
2185 | | - $_modsec_disable_msgs = $modsec_disable_msgs |
2186 | | - } |
| 2179 | + if $modsec_disable_msgs =~ Array { |
| 2180 | + $_modsec_disable_msgs = { '.*' => $modsec_disable_msgs } |
| 2181 | + } else { |
| 2182 | + $_modsec_disable_msgs = $modsec_disable_msgs |
2187 | 2183 | } |
2188 | 2184 |
|
2189 | | - if $modsec_disable_tags { |
2190 | | - if $modsec_disable_tags =~ Array { |
2191 | | - $_modsec_disable_tags = { '.*' => $modsec_disable_tags } |
2192 | | - } else { |
2193 | | - $_modsec_disable_tags = $modsec_disable_tags |
2194 | | - } |
| 2185 | + if $modsec_disable_tags =~ Array { |
| 2186 | + $_modsec_disable_tags = { '.*' => $modsec_disable_tags } |
| 2187 | + } else { |
| 2188 | + $_modsec_disable_tags = $modsec_disable_tags |
2195 | 2189 | } |
2196 | 2190 |
|
2197 | 2191 | concat { "${priority_real}${filename}.conf": |
|
2828 | 2822 | } |
2829 | 2823 | } |
2830 | 2824 |
|
2831 | | - if $modsec_disable_vhost or $modsec_disable_ids or !empty($modsec_disable_ips) or $modsec_disable_msgs or $modsec_disable_tags or $modsec_audit_log_destination or ($modsec_inbound_anomaly_threshold and $modsec_outbound_anomaly_threshold) or $modsec_allowed_methods { |
| 2825 | + if $modsec_disable_vhost or $_modsec_disable_ids or !empty($modsec_disable_ips) or $_modsec_disable_msgs or $_modsec_disable_tags or $modsec_audit_log_destination or ($modsec_inbound_anomaly_threshold and $modsec_outbound_anomaly_threshold) or $modsec_allowed_methods { |
2832 | 2826 | $security_params = { |
2833 | 2827 | 'modsec_disable_vhost' => $modsec_disable_vhost, |
2834 | 2828 | 'modsec_audit_log_destination' => $modsec_audit_log_destination, |
2835 | | - '_modsec_disable_ids' => $modsec_disable_ids, |
| 2829 | + '_modsec_disable_ids' => $_modsec_disable_ids, |
2836 | 2830 | 'modsec_disable_ips' => $modsec_disable_ips, |
2837 | | - '_modsec_disable_msgs' => $modsec_disable_msgs, |
2838 | | - '_modsec_disable_tags' => $modsec_disable_tags, |
| 2831 | + '_modsec_disable_msgs' => $_modsec_disable_msgs, |
| 2832 | + '_modsec_disable_tags' => $_modsec_disable_tags, |
2839 | 2833 | 'modsec_body_limit' => $modsec_body_limit, |
2840 | 2834 | 'modsec_inbound_anomaly_threshold' => $modsec_inbound_anomaly_threshold, |
2841 | 2835 | 'modsec_outbound_anomaly_threshold' => $modsec_outbound_anomaly_threshold, |
|
0 commit comments