cscli collections install openappsec/openappsec
A collection for open-appsec that allow to ban IPs that made requests that open-appsec blocked in the waf.
This collection handle most of the waapIncidentType
that open-appsec can generate.
SQL Injection
Path Traversal
LDAP Injection
Remote Code Execution
Vulnerability Scanning
Cross Site Scripting
XML External Entity
Evasion Techniques
General
URL instead of file
Cross Site Request Forgery
Cross Site Redirect
Open Redirect
Schema Validation
Bot Protection
Error Disclosure
Error Limit
Illegal http method violation
Http limit violation
Request Rate Limit
Example acquisition for this collection :
source: file
filenames:
- /var/log/nano_agent/cp-nano-http-transaction-handler.log*
labels:
type: openappsec