Discussion started by felosi, Jun 4, 2009.

  1. felosi

    felosi

    I just need to make sure of this, I am pretty sure litespeed just sees it in httpd.conf and activates rules.

    Do I have to activate the request filter in litespeed admin in order for mod_security rules included from httpd.conf to work?

    I have seen some servers that don't seem to activate the rules until I enable in litespeed admin but could be some oversight on my part.

    Also is it better to just include a ruleset or folder of rules from httpd.conf or use the request filter in litespeed admin? Apache rules can be added to that too as well right?
  2. mistwang

    mistwang

    Those are two separate configuration, for vhost configured via Apache httpd.conf, all mod_security rules should be configured though httpd.conf or include files. the "Request Filter" configuration in LSWS web console has no effect to vhosts configured via httpd.conf

