While my WAF is in monitoring mode , can I find out what attacks would be blocked if I switch over into rejecting mode ,
This thread was automatically locked due to age.
----------
Sophos user, admin and reseller.
Private Setup:
[client 198.20.69.74] ModSecurity: Warning. Pattern match "^5\\d{2}$" at RESPONSE_STATUS. [file "/usr/apache/conf/waf/modsecurity_crs_outbound.conf"] [line "53"] [id "970901"] [rev "2"] [msg "The application is not available"] [data "Matched Data: 500 found within RESPONSE_STATUS: 500"] [severity "ERROR"] [ver "OWASP_CRS/2.2.7"] [maturity "9"] [accuracy "9"] [tag "WASCTC/WASC-13"] [tag "OWASP_TOP_10/A6"] [tag "PCI/6.5.6"] [hostname "my.url"] [uri "/"] [unique_id "VO5xAsOShSEAABz8O6sAAABD"]