CSF blocking IPs, but users can still visit website
Posted: 14 Jan 2015, 14:42
As the title says, we have CSF running and successfully blocking IPs from .htaccess based login failures. We are running nginx, but we have updated the log file locations to our nginx logs and CSF is working great. IPs are auto added to csf.deny after several failed login attempts.
Our problem arises in that users can still load up the website even after their IP has been blocked. They are locked out of SSH and probably other system services, but can continue to load the page and perform attacks. How can we change the CSF configuration so that requests to the website are also denied when an IP is blocked?
Our problem arises in that users can still load up the website even after their IP has been blocked. They are locked out of SSH and probably other system services, but can continue to load the page and perform attacks. How can we change the CSF configuration so that requests to the website are also denied when an IP is blocked?