-
Type:
Suggestion
-
Resolution: Unresolved
-
None
-
Component/s: Security - Other
-
None
-
1
-
1
Problem
In case of integration of Bitbucket with Apache ModSecurity https://modsecurity.org/ application firewall a lot of important Bitbucket HTTP and JS calls are getting blocked because of the false positives.
By default ModSecurtiy is running with OWASP ModSecurity Core Rule Set (CRS) which has exceptions for the popular CMS like Wordpress https://www.modsecurity.org/CRS/Documentation/exceptions.html?highlight=wordpress
Solution
Please provide the the exception rule set for OWASP CRS.