Mantis vs. Apache ModSecurity

Get help from other users here.

Moderators: Developer, Contributor

Post Reply
grante
Posts: 5
Joined: Apr 10, 2015 9:47 am

Mantis vs. Apache ModSecurity

Post by grante »

I'm running into "500" errors from Apache because ModSecurity is enabled, and it's seeing patterns in submitted text (usually notes) that trigger an error (it thinks it's detecting an SQL injection attack). I belienve I know how to disable ModSecurity, but I'm a bit reluctant to do so.

Does anybody else run Mantis with ModSecurity enabled?

If so, can anybody point me to a ModSecurity configuration that works with Mantis?

Or is it considered safe to disable ModSecurity for Mantis?

Post Reply