-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On Jun 19, 2011, at 6:09 PM, pierz wrote: > Yes exactly, regarding the manual, this is the purpose of the > <location>all</location> statement. > > But agents doesn't block IP if the attack occur on the server.
That seems to be correct. I haven't tried this myself as of yet. Too chicken.. :P Do you have any other active response blocks in your config, or just the one with location all ? Are you verifying the lack of block via logs, or by checking iptables directly? - --------------------------- Jason 'XenoPhage' Frisvold [email protected] - --------------------------- "Any sufficiently advanced magic is indistinguishable from technology." - - Niven's Inverse of Clarke's Third Law -----BEGIN PGP SIGNATURE----- Version: GnuPG/MacGPG2 v2.0.14 (Darwin) iEYEARECAAYFAk3/j2gACgkQ8CjzPZyTUTQx+gCePaAsokVgKyfY8AnCZedoDGNb w/gAn3Q26+Hn3gqMIU9VwB+HUFrZiJE5 =/Qm6 -----END PGP SIGNATURE-----
