diff --git a/nginx/modsecurity/global-exceptions.conf b/nginx/modsecurity/global-exceptions.conf index af5aaca..0df7d32 100644 --- a/nginx/modsecurity/global-exceptions.conf +++ b/nginx/modsecurity/global-exceptions.conf @@ -18,7 +18,13 @@ SecRule REQUEST_URI "@beginsWith /ocs/v2.php/apps/user_status/api/v1/heartbeat" nolog, \ ctl:ruleRemoveById=942100, \ msg:'TUNING: Falso-positivo de SQLi (942100) removido para a API de heartbeat'" - +SecRule REQUEST_URI "@beginsWith /apps/files/api/v1/config/sort_favorites_first" \ + "id:1002, \ + phase:2, \ + pass, \ + nolog, \ + ctl:ruleRemoveById=920420, \ + msg:'TUNING: Falso-positivo de decodificacao (920420) removido para a API de config'" # -------------------------------------------------------------------------- # Exceções para o Zabbix # --------------------------------------------------------------------------