Page 1 of 1

deny_ip_limit does not remove IPs from iptables?

Posted: 07 Jan 2011, 02:06
by robm
When the deny_ip_limit limit is exceeded, and an additional "csf -d" command is run, the IPs are removed from csf.deny, but they still seem to be active in iptables. Is this the expected behavior? I would have thought they would be removed from iptables with csf -dr automatically so csf.deny is in sync with iptables.

Running csf version 5.14

Rob

Re: deny_ip_limit does not remove IPs from iptables?

Posted: 17 Jan 2011, 09:37
by chirpy
You're right, it should remove it from iptables as well. I'll look at modifying that behaviour in the next release.