Hi everyone,
I'm new here, we are testing SmartStore for our needs, and when we placed it behind a web application firewall that uses mod_security we were blocked from making new orders. On inspecting Mod_security log files, it indicated that it violated the following filters:
960015
981204
981176
981173
960010
After configuring our web application firewall to skip the indicated filters, the shopping cart worked fine.
My question is it all right to skip these filters?
Maybe for filters that are known to produce frequent false positives like 960015 and 981173 would be fine to skip, but the filters that do not usually give false positive - 981204,981176,960010 would it be safe to skip these too?
Is it possible to re-write the code to avoid violating these filters?
Thanks.