store | blogs | forums | twitter | facebook | wiki | mailing lists | downloads | support portal
Atomic Secure Linux
It is currently Wed May 22, 2013 8:33 pm

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic Share/Bookmark  [ 1 post ] 
Author Message
 Post subject: Help with RBL for malware/spam checks..
Unread postPosted: Sun May 15, 2011 1:12 pm 
Offline
New Forum User
New Forum User

Joined: Sun Mar 13, 2011 2:48 am
Posts: 4
Location: Seoul
Hi.

I run a website where visitors can submit information about themselves. Recently, a lot of URLs are being submitted that are found in SpamHaus (spam and phishing) and Google Safe Browing list (fantastic for malware, many URIs are never in SpamHaus but are in Google).

I am on CentOS with Cpanel/WHM and mod_sec 2.5.13 (latest stable as of now).

I want to create a rule that does this:

  • Check all GET and POST requests to *specific files* on my server, not overall general stuff
  • If a URI is found in the GET or POST (through "ARGS"?) then check it against
    (a) FIRST, a local list if possible -- blacklist will block it, whitelist will skip all rules
    (b) IF not found in either list, then go for RBL (SpamHaus etc)
    (c) If not found there, then also check Google Safe Browsing list

How do I specify this? Can someone please help me with the specific ruleset?

Thanks!


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic Share/Bookmark  [ 1 post ] 

» Feed - Atomicorp

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: Google [Bot] and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group