Giter Club home page Giter Club logo

plugin-registry's Introduction

OWASP CRS Plugin Registry

Registry for OWASP CRS plugins, official and 3rd party.

OWASP CRS allows for plugins. Yet the rule ID namespace needs to be coordinated. This repo serves as the official place to register plugins and reserve rule ID ranges.

The rule ID range from 9,500,000 - 9,999,999 is reserved for CRS plugins.

Plugins usually get a range of 1,000 IDs with the notable exception of the incubator plugin that maps the regular CRS IDs from 900K for each rule to the range 9,900,000 - 9,999,999.

Plugin Name Rule ID Range Repository Type Status CI
template 9,500,000 - 9,500,999 coreruleset/template-plugin official ✅ tested Integration tests
auto-decoding 9,501,000 - 9,501,999 coreruleset/auto-decoding-plugin official untested
antivirus 9,502,000 - 9,502,999 coreruleset/antivirus-plugin official being tested
body-decompress 9,503,000 - 9,503,999 coreruleset/body-decompress-plugin official being tested
fake-bot 9,504,000 - 9,504,999 coreruleset/fake-bot-plugin official ✅ tested Integration tests
google-oauth2 9,505,000 - 9,505,999 coreruleset/google-oauth2-plugin official ✅ tested Integration tests
drupal-rule-exclusions 9,506,000 - 9,506,999 coreruleset/drupal-rule-exclusions-plugin official untested
wordpress-rule-exclusions 9,507,000 - 9,507,999 coreruleset/wordpress-rule-exclusions-plugin official ✅ tested Integration tests
nextcloud-rule-exclusions 9,508,000 - 9,508,999 coreruleset/nextcloud-rule-exclusions-plugin official ✅ tested Integration tests
dokuwiki-rule-exclusions 9,509,000 - 9,509,999 coreruleset/dokuwki-rule-exclusions-plugin official untested
cpanel-rule-exclusions 9,510,000 - 9,510,999 coreruleset/cpanel-rule-exclusions-plugin official untested
xenforo-rule-exclusions 9,511,000 - 9,511,999 coreruleset/xenforo-rule-exclusions-plugin official being tested
phpbb-rule-exclusions 9,512,000 - 9,512,999 coreruleset/phpbb-rule-exclusions-plugin official being tested
phpmyadmin-rule-exclusions 9,513,000 - 9,513,999 coreruleset/phpmyadmin-rule-exclusions-plugin official being tested
dos-protection-modsecurity-v2 9,514,000 - 9,514,999 coreruleset/dos-protection-plugin-modsecurity-v2 official untested
dos-protection-modsecurity-v3 9,515,000 - 9,515,999 coreruleset/dos-protection-plugin-modsecurity-v3 official draft
machine-learning-integration-plugin 9,516,000 - 9,516,999 coreruleset/machine-learning-integration-plugin official draft
performance-plugin 9,517,000 - 9,517,999 coreruleset/performance-plugin official draft
ghost-rule-exclusions 9,518,000 - 9,518,999 coreruleset/ghost-rule-exclusions-plugin official draft
roundcube-rule-exclusions-plugin 9,519,000 - 9,519,999 EsadCetiner/roundcube-rule-exclusions-plugin 3rd party ✅ tested Integration tests
sogo-rule-exclusions-plugin 9,520,000 - 9,520,999 EsadCetiner/sogo-rule-exclusions-plugin 3rd party ✅ tested Integration tests
iredadmin-rule-exclusions-plugin 9,521,000 - 9,521,999 EsadCetiner/iredadmin-rule-exclusions-plugin 3rd party ✅ tested Integration tests
wordpress-hardening-plugin 9,522,000 - 9,522,999 eilandert/wordpress-hardening-plugin 3rd party untested
incubator 9,900,000 - 9,999,999 coreruleset/incubator-plugin official -

plugin-registry's People

Contributors

airween avatar azurit avatar dune73 avatar eilandert avatar esadcetiner avatar fzipi avatar lifeforms avatar redxanadu avatar s0obi avatar themiddleblue avatar theseion avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

plugin-registry's Issues

Update status information

We added a "status" column? But the information is out of date.

Someone with write access needs to update the newly released plugins.

Move the plugin registry list to a different format

While having the list in the readme is easy to read, it is not easy to consume from other sites (website, documentation, etc.).

We should think on a way to manage the list using yaml for example, and generating the README.md file using a custom github action.

Requirements

  • have a readme skeleton where the table will be placed
  • create github action for post-processing yaml plugin list
  • process the yaml content and insert the table into the markdown file
  • commit the file in the GHA

Plugin type

I would add a column to the table which will distinguish between official and 3rd party plugins. It could be called Type with values official / 3rd party or Official with values yes / no.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.