I had a maxed out csf.deny
if I then do
csf -d 1.2.3.4/24
it will happily remove "do not delete" lines
there were clearly other lines available to delete in the csf.deny
mostly auto NETBLOCK and PERMBLOCK, but they were left untouched
"do not delete" not obeyed when new rules manually added
-
- Moderator
- Posts: 1524
- Joined: 01 Oct 2008, 09:24
Re: "do not delete" not obeyed when new rules manually added
I am unable to recreate this as a problem. I can only suggest that you check that you only have single spaces between "do not delete" and that the tag is on the same line as the IP address following the required # symbol. Other than that, you can easily preserve denies by using an Include file instead.