it
ModSecurity WAF Production Setup Guide — ตั้งค่า

ModSecurity WAF

ModSecurity WAF Production Setup OWASP CRS Nginx Apache SQL Injection XSS Rule Anomaly Scoring Paranoia Level Audit Log
เนื้อหาเกี่ยวข้อง — build rest api python
| Feature | ModSecurity v2 | ModSecurity v3 | Cloud WAF (AWS/CF) |
|---|---|---|---|
| Architecture | Embedded Module | libmodsecurity + Connector | Managed Service |
| Web Server | Apache only | Nginx, Apache, IIS | Any (Proxy) |
| OWASP CRS | รองรับ | รองรับ | Managed Rules |
| Cost | ฟรี (OSS) | ฟรี (OSS) | $5-100+/เดือน |
| Maintenance | สูง (Self-managed) | สูง (Self-managed) | ต่ำ (Managed) |
| Customization | สูงมาก | สูงมาก | ปานกลาง |

เคล็ดลับ
- DetectionOnly: เริ่ม DetectionOnly ดู Log 1-2 สัปดาห์ก่อน Block
- Paranoia 1: เริ่ม Paranoia Level 1 ค่อยๆ เพิ่ม
- JSON Log: ใช้ JSON Audit Log ง่ายต่อ Parse ด้วย ELK/Loki
- Whitelist: Whitelist Monitoring IP Internal Services
- Test: ทดสอบ Regression หลังทุกการ Tune Rule
ModSecurity คืออะไร
Open Source WAF SQL Injection XSS CSRF RCE Apache Nginx Module OWASP CRS Rule-based Audit Log Anomaly Scoring ฟรี
แนะนำเพิ่มเติม — บทวิเคราะห์จาก XM Signal
เนื้อหาเกี่ยวข้อง — ทำความเข้าใจ Python httpx Home Lab Setup
เนื้อหาเกี่ยวข้อง — apache iii score คือ





