Commit graph

89 commits

Author SHA1 Message Date
Théophile Diot
3e67dbdb8d
Update OWASP Core Rule Set to version 4.10.0 and add CVE-2023-5003 to restricted files 2024-12-30 20:26:34 +00:00
Théophile Diot
b3e273dd9a
feat: update version to 1.6.0-rc1 across project files and Docker configurations 2024-12-20 15:29:01 +01:00
Théophile Diot
baba613dec
fix: update DNSBL_LIST to remove deprecated entries and improve formatting 2024-12-03 09:41:58 +01:00
Théophile Diot
bff7ff6dc6
chore: update coreruleset to version 4.9.0 and enhance documentation 2024-12-02 18:26:18 +01:00
Théophile Diot
a94d7c7a97
docs: update wildcard certificate documentation to clarify DNS challenge requirement 2024-11-15 17:28:40 +01:00
Théophile Diot
444961ec99
Update docs about let's encrypt 2024-11-12 15:17:23 +01:00
Théophile Diot
a5ed94c835
Update Core Rule Set v3 to version v3.3.7 2024-10-30 10:21:50 +01:00
Théophile Diot
806f2632f2
Update Core Rule Set v4 to v4.8.0 2024-10-29 16:10:24 +01:00
Théophile Diot
bf873339e7
Soft merge branch '1.5' into dev 2024-10-01 16:02:46 +02:00
Théophile Diot
970874e983
Update coreruleset-v4 version to v4.7.0 2024-09-26 17:28:45 +02:00
Florian Pitance
15fa91d53e
Merge pull request #1375 from spwoodcock/docs/allowed-methods-post
[DOCS] add comment to ALLOWED_METHODS section about enabling HTTP POST
2024-09-17 12:11:52 +02:00
Théophile Diot
9a1123f37d
🚀 Road to 1.5.10 2024-08-30 11:19:26 +02:00
Théophile Diot
c7b8f30a52
chore: Update core and python dependencies + update nginx version to 1.26.2 2024-08-30 11:08:57 +02:00
Théophile Diot
b6d495a916
chore: Update coreruleset v3 to v3.3.6 and coreruleset v4 to v4.6.0 2024-08-30 10:35:21 +02:00
Théophile Diot
d71e4d5b75
Soft merge branch 'dev' into branch '1.6' 2024-07-25 11:00:41 +01:00
spwoodcock
22ea722189 docs: use mkdocs admonition for ALLOWED_METHODS note 2024-07-24 15:38:52 +01:00
Théophile Diot
f74f215bf9
Update docs about Coreruleset v4 2024-07-24 13:02:58 +01:00
spwoodcock
7c7446f736 docs: add note that POST must be used with OPTIONS in ALLOWED_METHODS 2024-07-24 07:13:33 +01:00
Théophile Diot
162e7a43e9
feat: Add warning and info messages for security.txt plugin configuration in security tunning documentation 2024-07-22 16:44:25 +01:00
Théophile Diot
e5434b93e9
feat: Add security.txt documentation 2024-07-22 16:32:09 +01:00
Théophile Diot
bb6317c202
Start adding documentation for future CrowdSec core plugin 2024-06-27 16:17:10 +01:00
Théophile Diot
da0db03482
chore: Update version to 1.5.9 2024-06-27 14:59:35 +01:00
Théophile Diot
676d65267e
[#1308] Add support for CRS v4 plugins via custom configurations but also via the new MODSECURITY_CRS_PLUGIN_URLS setting that automatically downloads and handles updates of CRS compatible plugins 2024-06-27 14:49:50 +01:00
Théophile Diot
2e825a7d7f
chore: Update OWASP Core Rule Set to version 4.4.0 in docs 2024-06-27 14:16:10 +01:00
Théophile Diot
8a138b5254
chore: Bump version to 1.6.0-beta 2024-06-24 16:52:44 +01:00
Théophile Diot
2c3fe6bfe0
Add support for reCAPTCHA v2 and invisible 2024-06-17 17:41:17 +01:00
Théophile Diot
3f9175881a
chore: Update plugin.json files and docs with improved help text for URL schemes 2024-06-12 18:26:12 +02:00
florian
f598bd789a
docs - fix wrong default value for HTTP3 2024-06-02 17:08:24 +02:00
Théophile Diot
b01de41b32
Update documentation about HTTP3 2024-05-27 10:20:41 +01:00
Théophile Diot
51194f0fed
Road to v1.5.8 🚀 2024-05-25 15:56:42 +01:00
Théophile Diot
3d76e10e8a
feat: Add nightly build of the OWASP coreruleset that are automatically downloaded and updated 2024-05-15 18:03:34 +02:00
Théophile Diot
7b0bfb1899
Update documentation for Reporting and Backup S3 new settings 2024-05-13 11:51:25 +02:00
florian
fea3614e01
update settings in docs to reflect new order, remove useless section for migration in security tuning section, update changelog and upgrade k8s runners for tests 2024-05-03 17:20:47 +02:00
Théophile Diot
1b3dff4015
Update coreruleset-v4 to version 4.2.0 2024-04-24 09:44:07 +02:00
Théophile Diot
f4952ee8bb
Add LETS_ENCRYPT_DNS_CLEAR_OLD_CERTS in security-tuning.md docs 2024-04-23 18:27:14 +02:00
Théophile Diot
6dd7e7b62c
Update USE_LETS_ENCRYPT_DNS_WILDCARD default value in security-tuning.md docs 2024-04-23 18:26:07 +02:00
florian
c200d5da2b
docs - add crowdsec console integration in bunkernet / security tuning 2024-04-19 11:15:36 +02:00
Théophile Diot
187d8a50cf
Update documentation to add Migration and Backup S3 pro plugins 2024-04-18 15:38:59 +02:00
Théophile Diot
10caca83ee
Update Docker backup commands in security-tuning.md and upgrading.md 2024-04-17 17:27:54 +02:00
Théophile Diot
5074ed4ded
Add instructions for RHEL 8.9 users in backup security tuning and upgrade documentation 2024-04-05 19:10:38 +01:00
florian
cca461b4ba
docs - add missing stream support icons and review security tuning backup section 2024-04-05 15:00:34 +02:00
Théophile Diot
5d15c03fb4
Add instructions for resolving MariaDB/MySQL authentication plugin issue in backup plugin section of security tuning in the documentation 2024-04-04 21:54:34 +01:00
Théophile Diot
c5fb906d9f
Update database restore command and add example for failure case 2024-04-04 12:21:16 +01:00
Théophile Diot
00e264893b
Add backup settings to the documentation 2024-04-03 16:03:48 +01:00
Théophile Diot
9ac335a886
Update version to 1.5.7 2024-03-28 12:04:59 +00:00
florian
2aae0394eb
misc - add DISABLE_DEFAULT_SERVER_STRICT_SNI setting to avoid breaking changes when using HTTPS behind a reverse proxy 2024-03-26 21:29:54 +01:00
florian
fee5021c4b
docs - fix pro icon 2024-03-25 23:31:48 +01:00
Jordan Blasenhauer
6ae61b0dfd update security tuning dns format 2024-03-25 15:30:17 +01:00
Jordan Blasenhauer
6fd1f0704e enhance security tuning pro 2024-03-25 15:15:06 +01:00
Jordan Blasenhauer
4865da7ddf update doc crown 2024-03-25 15:03:37 +01:00