deny_ip_limit does not remove IPs from iptables?

This forum is only for reproducible bugs with csf and lfd (i.e. not iptables problems, lack of understanding how to use a feature, etc). Posts must be accompanied with full technical details of the problem and how it can be recreated. Any posts not adhering to this, or not considered bugs, will be moved to the General Discussion (csf) forum.
Post Reply
robm
Junior Member
Posts: 33
Joined: 20 Jan 2007, 20:44

deny_ip_limit does not remove IPs from iptables?

Post by robm »

When the deny_ip_limit limit is exceeded, and an additional "csf -d" command is run, the IPs are removed from csf.deny, but they still seem to be active in iptables. Is this the expected behavior? I would have thought they would be removed from iptables with csf -dr automatically so csf.deny is in sync with iptables.

Running csf version 5.14

Rob
chirpy
Moderator
Posts: 3537
Joined: 09 Dec 2006, 18:13

Re: deny_ip_limit does not remove IPs from iptables?

Post by chirpy »

You're right, it should remove it from iptables as well. I'll look at modifying that behaviour in the next release.
Post Reply