diff --git a/conf/modsecurity/crs/RESPONSE-999-EXCLUSION-RULES-AFTER-CRS.conf b/conf/modsecurity/crs/RESPONSE-999-EXCLUSION-RULES-AFTER-CRS.conf index 6903e9eac6c0b9679be609587df21a968968871c..8d1e5cf34646009ce5bf6f6e8a8fe371d2782bb6 100644 --- a/conf/modsecurity/crs/RESPONSE-999-EXCLUSION-RULES-AFTER-CRS.conf +++ b/conf/modsecurity/crs/RESPONSE-999-EXCLUSION-RULES-AFTER-CRS.conf @@ -33,3 +33,6 @@ SecRuleRemoveByID 920440 # Having '../' in the response body. SecRuleRemoveByID 930110 +# CR/LF + HTTP method name. +SecRuleRemoveByID 921110 +