From 7e3e0610184f2cb4c357b8aaf312adec6bff19e1 Mon Sep 17 00:00:00 2001 From: Mitch Dawson Date: Tue, 12 Nov 2024 16:30:18 +0000 Subject: [PATCH] add additional bypass rules --- helm_deploy/values-base.yaml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/helm_deploy/values-base.yaml b/helm_deploy/values-base.yaml index 0435666..30def6d 100644 --- a/helm_deploy/values-base.yaml +++ b/helm_deploy/values-base.yaml @@ -90,6 +90,9 @@ datahub-frontend: nginx.ingress.kubernetes.io/modsecurity-snippet: | SecRuleEngine On SecRule REQUEST_URI "@beginsWith /api/v2/graphql" "id:1005,phase:2,t:none,ctl:ruleRemoveById=932150;ARGS:json.query" + SecRule REQUEST_URI "@beginsWith /api/v2/graphql" "id:1005,phase:2,t:none,ctl:ruleRemoveById=932115;ARGS:json.query" + SecRule REQUEST_URI "@beginsWith /api/v2/graphql" "id:1005,phase:2,t:none,ctl:ruleRemoveById=941180;ARGS:json.query" + SecRule REQUEST_URI "@beginsWith /api/v2/graphql" "id:1005,phase:2,t:none,ctl:ruleRemoveById=949110;ARGS:json.query" SecDefaultAction "phase:2,pass,log,tag:github_team=data-catalogue" SecDefaultAction "phase:4,pass,log,tag:github_team=data-catalogue" tls: