Datum unbekanntAngaben zum Datum
Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.
Erstmals gesehen am .
HAProxy Enterprise von HAProxy
HAProxy Enterprise 3.3r1: OWASP CRS 4 und Captcha-Änderungen
HAProxy Enterprise 3.3r1 unterstützt im WAF jetzt OWASP CRS Version 4 (auch zurückportiert auf 3.0r1, 3.1r1 und 3.2r1) und bringt im Captcha-Modul zwei Breaking Changes (neue Action http-response captcha(<captcha_section>) und angepasste filter-Direktiven) sowie neue Captcha-Section-Direktiven.
Key changes in the HAProxy Enterprise 3.3r1 release include:
HAProxy Enterprise WAF
HAProxy Enterprise 3.3r1 WAF introduces support for OWASP CRS version 4. This enhancement is backported to HAProxy Enterprise versions 3.0r1, 3.1r1, and 3.2r1.
Captcha module
Updates to the Captcha module include:
Breaking change: Frontend configurations must include the new
http-response captcha(<captcha_section>)action. See Actions.Breaking change: The
filterdirectives in frontend configurations must appendunless METH_POST { path /.well-known/haproxy/captcha_callback }. For example:haproxy
filter htmldom mode strict head-append '%[captcha.js(<captcha_section>)]' unless METH_POST { path /.well-known/haproxy/captcha_callback }haproxy
filter htmldom mode strict head-append '%[captcha.js(<captcha_section>)]' unless METH_POST { path /.well-known/haproxy/captcha_callback }New captcha section directives:
callback-token <expr>,callback-token-lf <fmt>,callback-valid-time <sec>,cookie-name <name>, andcust-html-file-lf <file>. See Captcha section directives for details. …