New WAF tool -REMO- the graphical rule editor for ModSecurity
![]()
Configuring webserver security made easy – Well, not yet, but that’s the plan…
Christian Folini announced the public release of REMO, a project to build a graphical rule editor for ModSecurity with a positive/whitelist approach.
Short list of features:
- Ruby on rails application with ajax use
- Enter http requests, display them, edit them, delete them, rearrange them
- Edit the http headers of the requests
- Edit the query string parameters
- Edit the cookie parameters
- Edit the post payload arguments
- Every argument can be optional or mandatory
- The response to every argument failure can be configured specially including http status code and optional redirect location
- Argument names can contain regular expressions themselves
- Default value domains for all arguments. So you do not have to edit a regular expression for every parameter. Just select a predefined value.
- Generate positive ModSecurity2 ruleset
- Import ModSecurity audit-logs
- Check requests in the audit-log against the ruleset in development to find out wether it will work in practice

I invite you to visit REMO website and give it a shot. Combined with the powerfull mod_security apache module, this might well be a viable Web Application Firewall solution for most of the websites.
Thank you for reading this post. You can now Leave A Comment (0) or Leave A Trackback.
Print This Post
Post Info
This entry was posted on Saturday, June 2nd, 2007 . Tagged with:You can follow any responses to this entry through the Comments Feed. You can Leave A Comment, or A Trackback.
Previous Post: Software Security Assurance: A Framework for Software Vulnerability Management and Audit »
Next Post: etiolated.org – Data Loss Search Engine »
Read More
Related Reading:
Latest Posts:
- Animated Presentation on Sony PSN Hack
- ArcSight Tip #1 – arcsight managersetup notification test
- I’m a CISSP
- Operation:Payback or Social Vendetta is Here
- I got owned by Malware Destructor 2011 Virus
- New Downtime Cost Calculator by Storagepipe.com. What if ?
- Securing Your Network from Web Threats
- My Twitter Notes on 2010-07-25
- New NetWitness Visualize : Welcome To The Future!
- My Twitter Notes on 2010-07-18



