latestOpenAPI 3.0.2cPanel License2026-08-106251554.3 MB

3da41671c02c

ModSecurity
Server Settings

Return ModSecurity logs

This function retrieves ModSecurity™ log entries from the modsec MySQL® database.

Important:

When you disable the Web Server role, the system disables this function.

get/modsec_get_log

Response

HTTP Request was successful.

Example response

{
  "data": [
    {
      "action_desc": "Access denied with code 406 (phase 1).",
      "file_exists": 1,
      "host": "server.example.com",
      "http_method": "GET",
      "http_status": 406,
      "http_version": "HTTP/1.1",
      "id": 28,
      "ip": "10.1.14.77",
      "justification": "Match of \"within %{tx.allowed_methods}\" against \"REQUEST_METHOD\" required.",
      "meta_file": "/usr/local/apache/conf/modsec_vendor_configs/OWASP/base_rules/modsecurity_crs_30_http_policy.conf",
      "meta_id": 960032,
      "meta_line": 31,
      "meta_logdata": "GET",
      "meta_msg": "Method is not allowed by policy",
      "meta_rev": 2,
      "meta_severity": "CRITICAL",
      "path": "/favicon.ico",
      "reportable": 1,
      "timestamp": "2019-10-13T07:58:04.000Z",
      "timezone": -300
    }
  ],
  "metadata": {
    "command": "modsec_get_log",
    "reason": "OK",
    "result": 1,
    "version": 1
  }
}