Firewall Response Actions
Table of Contents
Overview
Features
Architecture
Requirements
Requirement
Details
Non-Linux Platforms
Configuration
Firewall Manager Configuration
Rule Configuration with Response Actions
Response Action Types
iptables_block
iptables_blockParameter
Type
Default
Description
iptables_reject
iptables_rejectParameter
Type
Default
Description
iptables_log
iptables_logParameter
Type
Default
Description
iptables_rate_limit
iptables_rate_limitParameter
Type
Default
Description
Rule Examples
Port Scanning Detection & Block
SSH Brute Force Protection
DNS Tunneling Detection
Web Attack Detection
SYN Flood Protection
Firewall Manager API
Creating a Manager
Blocking IPs
Unblocking IPs
Querying State
Whitelist Management
Cleanup
Integration with Rules Engine
Safety Features
Whitelist Protection
Automatic Expiration
Custom Chain Isolation
Dry-Run Mode
Graceful Shutdown
Monitoring & Statistics
Available Statistics
Metric
Description
Action Statistics (Rules Engine)
Metric
Description
Viewing Active Blocks
Best Practices
Rule Design
Whitelist Management
Testing
Production Deployment
Troubleshooting
Manager Creation Fails
Rules Not Blocking
Blocks Not Expiring
Rules Persist After Shutdown
Viewing iptables Rules
Next Steps
Last updated