- Server operating system version
- AlmaLinux release 8.10 (Cerulean Leopard)
- Plesk version and microupdate number
- Plesk Obsidian 18.0.68
Hello,
this is an issue that first appeared last week after updating from Obsidian 18.0.67 to 18.0.68:
Our Web Application Firewall uses Comodo (free) with daily rule updates. We switched off the following security roles
211180
211170
210730
210040
210220
Whenever Comodo rules are changed our rules are replaced by
210710
222212
218500
The replacement occures after the daily update. It can be manually reproduced:
1. Open "Tools & Settings -> Web Application Firewall (ModSecurity)"
2. Enter your desired rules in "Security rule IDs"
3. Hit OK and open "Tools & Settings -> Web Application Firewall (ModSecurity)" again.
Your rules should be saved as expected in "Security rule IDs". They are also saved in server.conf and psa-database table WebServerSettingsParameters. Everything is working.
4. Open "Tools & Settings -> Web Application Firewall (ModSecurity) -> Settings" and disable updates (remove checkbox).
5. Hit OK and open "Tools & Settings -> Web Application Firewall (ModSecurity)" again.
Your rules are gone and 210710, 222212, 218500 are there.
We don't know if this is a bug or if we are missing something. Maybe custom rules are limited on AlamaLinux 8? What can be done? Thank you!
				
			this is an issue that first appeared last week after updating from Obsidian 18.0.67 to 18.0.68:
Our Web Application Firewall uses Comodo (free) with daily rule updates. We switched off the following security roles
211180
211170
210730
210040
210220
Whenever Comodo rules are changed our rules are replaced by
210710
222212
218500
The replacement occures after the daily update. It can be manually reproduced:
1. Open "Tools & Settings -> Web Application Firewall (ModSecurity)"
2. Enter your desired rules in "Security rule IDs"
3. Hit OK and open "Tools & Settings -> Web Application Firewall (ModSecurity)" again.
Your rules should be saved as expected in "Security rule IDs". They are also saved in server.conf and psa-database table WebServerSettingsParameters. Everything is working.
4. Open "Tools & Settings -> Web Application Firewall (ModSecurity) -> Settings" and disable updates (remove checkbox).
5. Hit OK and open "Tools & Settings -> Web Application Firewall (ModSecurity)" again.
Your rules are gone and 210710, 222212, 218500 are there.
We don't know if this is a bug or if we are missing something. Maybe custom rules are limited on AlamaLinux 8? What can be done? Thank you!
 
 
		 
 
		 
 
		