同一台服务器上有几十个其他WP安装,遵循相同的ModSec规则,但没有一个有问题。这是唯一安装了jetpack的WP安装,仅在jetpack处于活动状态时发生。问题如下:
帖子/页面编辑屏幕上的一些操作(到目前为止seems 要成为不刷新URL(如更新或配置特色图像)的用户,请显示以下警报:http://i.imgur.com/ULPiX.png
日志显示:
Received From: kvm1->/var/log/httpd/error_log
Rule: 1002 fired (level 2) -> "Unknown problem somewhere in the system."
Portion of the log(s):
body.xml:1: parser error : Document is empty
ModSecurity: XML parser error: XML: Failed parsing document. [hostname "www.mydomain.org"] [uri "/wp-admin/admin-ajax.php"] [unique_id "blablah"]
ModSecurity: [file "/etc/httpd/modsecurity.d/00_asl_z_antievasion.conf"] [line "36"] [id "330791"] [msg "Failed to parse request body. This may be an impedence mismatch attack, a broken application or a broken connection. This is not a false positive. Check your application or client for errors."] [data "XML parser error: XML: Failed parsing document."] [severity "CRITICAL"] Access denied with code 403 (phase 2). Match of "eq 0" against "REQBODY_ERROR" required. [hostname "www.mydomain.org"] [uri "/wp-admin/admin-ajax.php"] [unique_id "blablah"]
Jetpack is 1.7WP is 3.4.1Apache 2.2.15PHP fCGId 5.3.3
有什么想法吗?到目前为止,WP论坛一直没有回应。我已向JetPack支持部门发送了一封电子邮件。