diff --git a/docker/conf/modsecurity/crs/REQUEST-900-EXCLUSION-RULES-BEFORE-CRS.conf b/docker/conf/modsecurity/crs/REQUEST-900-EXCLUSION-RULES-BEFORE-CRS.conf index 69496982dcfd58d82c6f6ea7df31be9899741c6d..1d6a3ca92b59530ec502402b72a36c94af06f041 100644 --- a/docker/conf/modsecurity/crs/REQUEST-900-EXCLUSION-RULES-BEFORE-CRS.conf +++ b/docker/conf/modsecurity/crs/REQUEST-900-EXCLUSION-RULES-BEFORE-CRS.conf @@ -82,4 +82,10 @@ SecRule REQUEST_URI "@beginsWith /wp-json/wp/v2/widget-types/text/encode" \ nolog,\ ctl:ruleEngine=Off" +SecRule REQUEST_URI "@beginsWith /wp-admin/network/site-settings.php" \ + "id:1009, + phase:2,\ + pass,\ + nolog,\ + ctl:ruleRemoveTargetByTag=attack-sqli;ARGS:option[wp-piwik-tracking_code]"