Comment on OpnSense + Crowdsec = comfort

<- View Parent
MangoPenguin@lemmy.blahaj.zone ⁨3⁩ ⁨days⁩ ago

I don’t believe there are any logs being transferred, just the abusive IPs are shared with the central DB.

So if an IP starts hitting a ton of rules (like .env access, repeated 404s, 429s, etc… Or specific AppSec rules) then that IP is blocked and sent to their central DB where it’s pushed out to everyone running Crowdsec.

original
Sort:hotnewtop