How To Implement ModSecurity OWASP Core Rule Set in Nginx
How To Implement ModSecurity OWASP Core Rule Set in Nginx
https://github.com/SpiderLabs/owasp-modsecurity-
crs/zipball/master
unzip SpiderLabs-owasp-modsecurity-crs-2.2.9-26-gf16e0b1.zip
modsecurity_crs_10_setup.conf.example
base_rules
Since you have decided to use OWASP CRS, you need to merge the conf file
included in SpiderLabs OWASP CRS, which you just copied
(modsecurity_crs_10_setup.conf.example ) under nginx folder.
Nginx doesn’t support multiple ModSecurityConfig directives like Apache so
you need to put all rules conf together in a single file.