When the deny_ip_limit limit is exceeded, and an additional "csf -d" command is run, the IPs are removed from csf.deny, but they still seem to be active in iptables. Is this the expected behavior? I would have thought they would be removed from iptables with csf -dr automatically so csf.deny is in sync with iptables.
Running csf version 5.14
Rob
deny_ip_limit does not remove IPs from iptables?
Re: deny_ip_limit does not remove IPs from iptables?
You're right, it should remove it from iptables as well. I'll look at modifying that behaviour in the next release.