This repository was archived by the owner on May 14, 2020. It is now read-only.
This repository was archived by the owner on May 14, 2020. It is now read-only.
Monthly Chat Agenda November (2019-11-04) #1604
Closed
Description
This is the Agenda for the Monthly CRS Chat.
The chat is going to happen on https://owasp.slack.com in the channel #coreruleset on Monday, November 4, at 20:30 CET.
Items on the Agenda:
PRs
- Revert #578 #1616 Revert Add urlDecodeUni() operation to ARG/ARGS_NAMES #578
- New Rule 921190: HTTP Splitting #1610 New Rule 921190: HTTP Splitting
- New rule 920500: block backup extensions #1591 New rule 920500: block backup extensions
Issues
- Make ModSecurity CRS repositories easier to manage #1600 Make ModSecurity CRS repositories easier to manage
- Integrating rule check into Travis CI #1599 Integrating rule check into Travis CI
- Consistent support for the "ver" action #650 Consistent support for the "ver" action
- Review severity levels of CRS to make sure all rules have severity levels #610 Review severity levels of CRS to make sure all rules have severity levels
Other items
- Reporting from call with new ModSecurity project coordinator at Trustwave (and dev Felipe)
- Discussion of securely.ai : https://git.securely.ai/securely/common/securely-app-oss
- Update on the status of the CRS / ModSecurity Meetup in Bern (after 3 editions)
- Propose to formally use semantic versioning (MAJOR.MINOR.PATCH) (https://semver.org)
- On creating SECURITY.md (Create SECURITY.md #1590) , the question about what should be reported by email remains to be answered.