Mod security rules and Csf ban permanent

castris

Verified User
Joined
Apr 16, 2021
Messages
103
Location
Arcenillas
Hello.

I thought I understood the functionality of CSF firewall, or at least I had been using it for years, but now I'm struggling with DirectAdmin + CSF + Mod Security.

My setup​

Code:
MODSEC_LOG = "/var/log/httpd/error_log". // First problem because on directadmin I dont see any logs of directaemin here. I see in /var/log/nginx/modsec_audit.log

###############################################################################

# SECTION:Login Failure Blocking and Alerts

###############################################################################


# Configuración general de triggers

LF_TRIGGER = "0"

LF_TRIGGER_PERM = "3600"

LF_SELECT = "1"


# Configuración específica de mod_security

LF_MODSEC = "5"

LF_MODSEC_PERM = "7200"


# Configuración de puertos específicos para diferentes tipos de detección de fallos

PORTS_htpasswd = "80,443"

PORTS_mod_security = "80,443"

PORTS_mod_qos = "80,443"


Any ideas?
 
Back
Top