From 3cea41106cc6a432f5e9bb41b848caf1054eb3b0 Mon Sep 17 00:00:00 2001 From: Viktor Barzin Date: Sat, 18 Nov 2023 18:57:04 +0000 Subject: [PATCH] disable owasp rules for everyone as it is too false positiv-y [ci skip] --- modules/kubernetes/nginx-ingress/main.tf | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/kubernetes/nginx-ingress/main.tf b/modules/kubernetes/nginx-ingress/main.tf index 9e905b02..fa103bd4 100644 --- a/modules/kubernetes/nginx-ingress/main.tf +++ b/modules/kubernetes/nginx-ingress/main.tf @@ -308,7 +308,7 @@ resource "kubernetes_config_map" "ingress_nginx_controller" { data = { allow-snippet-annotations = true enable-modsecurity = true - enable-owasp-modsecurity-crs = true + enable-owasp-modsecurity-crs = false modsecurity-snippet : <<-EOT SecRuleEngine On ${var.honeypotapikey != null ? format("%s %s", "SecHttpBlKey", var.honeypotapikey) : ""}