{{define "title"}}ModSecurity Rules{{end}} {{define "page"}}modsec-rules{{end}} {{define "content"}}
. Add modsec.rules_file, modsec.overrides_file, and modsec.reload_command to csm.yaml.
| Enabled | ID | Description | Action | Phase | Hits (24h) | Escalate | Last Hit |
|---|
CSM custom rules (900000-900999) escalate to a firewall block after repeated denies. An excluded rule still denies the request (403), but CSM does not block the IP in the firewall.