Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update to CRS v4.1 #132

Closed
wants to merge 2 commits into from
Closed

Update to CRS v4.1 #132

wants to merge 2 commits into from

Conversation

hellerbarde
Copy link

@hellerbarde hellerbarde commented May 6, 2024

I was made aware of the failing pipeline for a renovatebot PR: https://github.com/vshn/modsecurity-docker/actions/runs/8677769722 by Mark Zeman.

Upstream made the image rootless with a recent (3 weeks ago) commit and that breaks the invocations of apt tools in this docker file.

I replaced all the occurrences of 3.3 with 4.1 as best I could, but I'm fairly certain there is some more work to be done here, but maybe someone can use this PR/Branch as a jumping off point, or help me fix the rest of the issues.

In particular I'm worried about this file: v4.1/transform-alert-message.awk
And some of the custom rules in custom-rules/ might need to be reworked for compatibility with v4.1

cheers,
Phil

@hellerbarde
Copy link
Author

hellerbarde commented May 6, 2024

It would be good to see if my fix for the dockerfile privilege gaining and dropping actually works, so if someone could approve the workflow, that would be good. (it works locally of course 😉 )

@hellerbarde
Copy link
Author

In hindsight, it might make sense to keep v3.3 and v4.x in the same repository, so this PR might not even be sensible to merge. I will convert it to a draft accordingly.

@hellerbarde hellerbarde marked this pull request as draft May 7, 2024 07:55
@mhutter
Copy link
Member

mhutter commented May 22, 2024

Hi @hellerbarde, good question regarding v3.3 vs v4; I'm not sure yet whether we actually still need the v3 images once we migrated the existing setup.

I have approved the workflow; I'll check if I can give you more permanent permissions to run workflows

@mhutter mhutter self-assigned this May 22, 2024
@mhutter mhutter mentioned this pull request Aug 12, 2024
@mhutter mhutter closed this Aug 13, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants