Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
stop68023y22 Mbyte LINE. WTF?!
How big is the file compressed? And can you split it(i have no idea about modsecurity) into chunks that have an general context? -
C0D4669023y@stop million.
One does not simply audit mod security, you just set it up and disable shitty rules you can't programmatically get around. -
hjk10156963y@stop he never said byte. He used the SI unit for million. So 22 million lines; that is a lot.
So OP I hope you can ask a software engineer ideally one with DevOps experience. You are correct this is not necessarily your job. -
Aldar12073y@electrineer I wish, luckily however, we don't get physical meetings with this particular customer, and only do meetings at all when dealing with a particularly nasty issue, or during migration planning and such.
@JeffGregg Hmm... That might be just it. I'll see if I could stuff an ELK stack somewhere on the existing HW. Thanks!
Related Rants
Okay, yes, modsecurity WAF is amazing and all, but... When one tries to implement its rules atop an existing app that wasn't developed in accordance to the rules... That hurts.
How tf am I supposed to parse and present a 6.5GB / 22M line audit log to the client?! Just parsing that monstrosity once takes *minutes*, let alone doing any sort of sorting / analysis!
I feel sick. This is exactly why I am a sysadmin and not a programmer, I don't like writing analysis stuff, or programs more complex than a few hundred lines of bash... :|
rant
log
why me
modsecurity