diff --git a/nginx/modsecurity/global-exceptions.conf b/nginx/modsecurity/global-exceptions.conf index ed53d5b..610127b 100644 --- a/nginx/modsecurity/global-exceptions.conf +++ b/nginx/modsecurity/global-exceptions.conf @@ -40,7 +40,13 @@ SecRule REQUEST_URI "@rx ^/.*/(src/branch|_edit|_new|commits/branch)/" "id:10008 SecRule REQUEST_URI "@rx ^/.*/.*(raw|assets)/" "id:10011,phase:1,nolog,pass,ctl:ruleEngine=Off" SecRule REQUEST_FILENAME "@rx \.conf$" "id:10013,phase:1,nolog,pass,chain,msg:'[CUSTOM] Whitelist .conf files for Git server'" SecRule SERVER_NAME "@streq git.itguys.com.br" "ctl:ruleRemoveById=930120" - +SecRule REQUEST_URI "@rx ^/[^/]+/[^/]+/upload-file$" \ + "id:10025, \ + phase:1, \ + pass, \ + nolog, \ + ctl:ruleEngine=Off, \ + msg:'TUNING: ModSecurity desativado para a rota de upload de arquivos do Gitea'" # -------------------------------------------------------------------------- # Exceções para o Grafana # --------------------------------------------------------------------------