Search found 1 match

by forbin
07 Nov 2019, 18:54
Forum: General Discussion (csf)
Topic: Bug? IP addresses not blocked because LOGDROPIN is after ACCEPT
Replies: 0
Views: 3477

Bug? IP addresses not blocked because LOGDROPIN is after ACCEPT

I am using "csf -td" to block certain IP addresses. This adds them to the LOGDROPIN chain. However, in the INPUT chain, LOGDROPIN comes AFTER the ACCEPT rules for specific ports, this effectively allows IP addresses that should be denied to still hit the computer via open ports. For exampl...