1
+ [
2
+ {
3
+ "enabled" :1 ,
4
+ "version_min" :300000 ,
5
+ "title" :" Testing SESSIONID variable (1/2)" ,
6
+ "expected" :{
7
+ "debug_log" : " Target value: \" rAAAAAAA2t5uvjq435r4q7ib3vtdjq1202\" "
8
+ },
9
+ "client" :{
10
+ "ip" :" 200.249.12.31" ,
11
+ "port" :123
12
+ },
13
+ "request" :{
14
+ "headers" :{
15
+ "Host" :" localhost" ,
16
+ "User-Agent" :" curl/7.38.0" ,
17
+ "Accept" :" */*" ,
18
+ "User-Agent" :" My sweet little browser" ,
19
+ "Cookie" : " PHPSESSID=rAAAAAAA2t5uvjq435r4q7ib3vtdjq120"
20
+ },
21
+ "uri" :" /?key=value&key=other_value" ,
22
+ "method" :" GET"
23
+ },
24
+ "server" :{
25
+ "ip" :" 200.249.12.31" ,
26
+ "port" :80
27
+ },
28
+ "rules" :[
29
+ " SecRuleEngine On" ,
30
+ " SecDebugLog \/ tmp\/ modsec_debug.log" ,
31
+ " SecRule REQUEST_HEADERS:User-Agent \" ^(.*)$\" \" id:'900018',phase:1,t:none,t:sha1,t:hexEncode,setsid:%{REQUEST_COOKIES:PHPSESSID}%,nolog,pass\" " ,
32
+ " SecRule REQUEST_HEADERS \" .*\" \" id:'900021',phase:1,setvar:SESSION.score=+10\" " ,
33
+ " SecRule REQUEST_HEADERS:User-Agent \" ^(.*)$\" \" id:'900068',phase:1,t:none,t:sha1,t:hexEncode,setsid:%{REQUEST_COOKIES:PHPSESSID}2,nolog,pass\" " ,
34
+ " SecRule REQUEST_HEADERS \" .*\" \" id:'900022',phase:1,setvar:SESSION.score=+5\" " ,
35
+ " SecRule SESSIONID \" .*\" \" id:1239,phase:1,log,pass\" "
36
+ ]
37
+ },
38
+ {
39
+ "enabled" :1 ,
40
+ "version_min" :300000 ,
41
+ "title" :" Testing SESSIONID variable (2/2)" ,
42
+ "expected" :{
43
+ "debug_log" : " Target value: \" whee\" "
44
+ },
45
+ "client" :{
46
+ "ip" :" 200.249.12.31" ,
47
+ "port" :123
48
+ },
49
+ "request" :{
50
+ "headers" :{
51
+ "Host" :" localhost" ,
52
+ "User-Agent" :" curl/7.38.0" ,
53
+ "Accept" :" */*" ,
54
+ "User-Agent" :" My sweet little browser" ,
55
+ "Cookie" : " PHPSESSID=whee"
56
+ },
57
+ "uri" :" /?key=value&key=other_value" ,
58
+ "method" :" GET"
59
+ },
60
+ "server" :{
61
+ "ip" :" 200.249.12.31" ,
62
+ "port" :80
63
+ },
64
+ "rules" :[
65
+ " SecRuleEngine On" ,
66
+ " SecDebugLog \/ tmp\/ modsec_debug.log" ,
67
+ " SecRule REQUEST_HEADERS:User-Agent \" ^(.*)$\" \" id:'900018',phase:1,t:none,t:sha1,t:hexEncode,setsid:%{REQUEST_COOKIES:PHPSESSID}%,nolog,pass\" " ,
68
+ " SecRule REQUEST_HEADERS \" .*\" \" id:'900021',phase:1,setvar:SESSION.score=+10\" " ,
69
+ " SecRule SESSIONID \" .*\" \" id:1239,phase:1,log,pass\" "
70
+ ]
71
+ }
72
+ ]
0 commit comments