mod-security activation

felosi

Well-Known Member
#1
I just need to make sure of this, I am pretty sure litespeed just sees it in httpd.conf and activates rules.

Do I have to activate the request filter in litespeed admin in order for mod_security rules included from httpd.conf to work?

I have seen some servers that don't seem to activate the rules until I enable in litespeed admin but could be some oversight on my part.

Also is it better to just include a ruleset or folder of rules from httpd.conf or use the request filter in litespeed admin? Apache rules can be added to that too as well right?
 

mistwang

LiteSpeed Staff
#2
Those are two separate configuration, for vhost configured via Apache httpd.conf, all mod_security rules should be configured though httpd.conf or include files. the "Request Filter" configuration in LSWS web console has no effect to vhosts configured via httpd.conf
 
Top