Open
Description
Currenlty, the msg can be set only by the starting SecRule statement in a chained rule which is often configured to work in phase 1 and no other information is available in here other than HTTP headers. For example, there is no way to log POST_VARS to the log message if the first rule operates in phase 1.
It is suggested to either make the msg be set by any SecRule in a chained rule or have the ability to edit the contents of msg.