|
2170 | 2170 | }
|
2171 | 2171 |
|
2172 | 2172 | ## Create a global LocationMatch if locations aren't defined
|
2173 |
| - if $modsec_disable_ids { |
2174 |
| - if $modsec_disable_ids =~ Array { |
2175 |
| - $_modsec_disable_ids = { '.*' => $modsec_disable_ids } |
2176 |
| - } else { |
2177 |
| - $_modsec_disable_ids = $modsec_disable_ids |
2178 |
| - } |
| 2173 | + if $modsec_disable_ids =~ Array { |
| 2174 | + $_modsec_disable_ids = { '.*' => $modsec_disable_ids } |
| 2175 | + } else { |
| 2176 | + $_modsec_disable_ids = $modsec_disable_ids |
2179 | 2177 | }
|
2180 | 2178 |
|
2181 |
| - if $modsec_disable_msgs { |
2182 |
| - if $modsec_disable_msgs =~ Array { |
2183 |
| - $_modsec_disable_msgs = { '.*' => $modsec_disable_msgs } |
2184 |
| - } else { |
2185 |
| - $_modsec_disable_msgs = $modsec_disable_msgs |
2186 |
| - } |
| 2179 | + if $modsec_disable_msgs =~ Array { |
| 2180 | + $_modsec_disable_msgs = { '.*' => $modsec_disable_msgs } |
| 2181 | + } else { |
| 2182 | + $_modsec_disable_msgs = $modsec_disable_msgs |
2187 | 2183 | }
|
2188 | 2184 |
|
2189 |
| - if $modsec_disable_tags { |
2190 |
| - if $modsec_disable_tags =~ Array { |
2191 |
| - $_modsec_disable_tags = { '.*' => $modsec_disable_tags } |
2192 |
| - } else { |
2193 |
| - $_modsec_disable_tags = $modsec_disable_tags |
2194 |
| - } |
| 2185 | + if $modsec_disable_tags =~ Array { |
| 2186 | + $_modsec_disable_tags = { '.*' => $modsec_disable_tags } |
| 2187 | + } else { |
| 2188 | + $_modsec_disable_tags = $modsec_disable_tags |
2195 | 2189 | }
|
2196 | 2190 |
|
2197 | 2191 | concat { "${priority_real}${filename}.conf":
|
|
2828 | 2822 | }
|
2829 | 2823 | }
|
2830 | 2824 |
|
2831 |
| - if $modsec_disable_vhost or $modsec_disable_ids or !empty($modsec_disable_ips) or $modsec_disable_msgs or $modsec_disable_tags or $modsec_audit_log_destination or ($modsec_inbound_anomaly_threshold and $modsec_outbound_anomaly_threshold) or $modsec_allowed_methods { |
| 2825 | + if $modsec_disable_vhost or $_modsec_disable_ids or !empty($modsec_disable_ips) or $_modsec_disable_msgs or $_modsec_disable_tags or $modsec_audit_log_destination or ($modsec_inbound_anomaly_threshold and $modsec_outbound_anomaly_threshold) or $modsec_allowed_methods { |
2832 | 2826 | $security_params = {
|
2833 | 2827 | 'modsec_disable_vhost' => $modsec_disable_vhost,
|
2834 | 2828 | 'modsec_audit_log_destination' => $modsec_audit_log_destination,
|
2835 |
| - '_modsec_disable_ids' => $modsec_disable_ids, |
| 2829 | + '_modsec_disable_ids' => $_modsec_disable_ids, |
2836 | 2830 | 'modsec_disable_ips' => $modsec_disable_ips,
|
2837 |
| - '_modsec_disable_msgs' => $modsec_disable_msgs, |
2838 |
| - '_modsec_disable_tags' => $modsec_disable_tags, |
| 2831 | + '_modsec_disable_msgs' => $_modsec_disable_msgs, |
| 2832 | + '_modsec_disable_tags' => $_modsec_disable_tags, |
2839 | 2833 | 'modsec_body_limit' => $modsec_body_limit,
|
2840 | 2834 | 'modsec_inbound_anomaly_threshold' => $modsec_inbound_anomaly_threshold,
|
2841 | 2835 | 'modsec_outbound_anomaly_threshold' => $modsec_outbound_anomaly_threshold,
|
|
0 commit comments