From ad5e6cd78964af55ba0b638c279ceb5eeeb452d8 Mon Sep 17 00:00:00 2001 From: fab Date: Sat, 21 Dec 2024 01:55:56 +0100 Subject: [PATCH] Create owasp2haproxy.py --- owasp2haproxy.py | 23 +++++++++++++++++++++++ 1 file changed, 23 insertions(+) create mode 100644 owasp2haproxy.py diff --git a/owasp2haproxy.py b/owasp2haproxy.py new file mode 100644 index 0000000..b97e11e --- /dev/null +++ b/owasp2haproxy.py @@ -0,0 +1,23 @@ +import os +import json + +OUTPUT_DIR = "waf_patterns/haproxy/" + +def load_owasp_rules(file_path): + with open(file_path, "r") as f: + return json.load(f) + +def generate_haproxy_conf(rules): + os.makedirs(OUTPUT_DIR, exist_ok=True) + config_file = os.path.join(OUTPUT_DIR, "waf.acl") + + with open(config_file, "w") as f: + f.write("# HAProxy WAF ACL rules\n") + for rule in rules: + f.write(f"acl block_{rule['category']} hdr_sub(User-Agent) -i {rule['pattern']}\n") + f.write(f"http-request deny if block_{rule['category']}\n") + print(f"[+] HAProxy WAF rules generated at {config_file}") + +if __name__ == "__main__": + owasp_rules = load_owasp_rules("owasp_rules.json") + generate_haproxy_conf(owasp_rules)