Intrusion Detection on the gateway and Crowdsec on NS8 behind it.
2 Likes
nice on what gateway you have installed crowdsec ?
I didn’t.
Unifi Ultra with IDS turned on in front of an NS8 “reverse proxy” and mail server with Crowdsec installed.
One thing I wanted to know was if Crowdsec on the NS8 reverse proxy was dealing with traffic before traefik and according to these below it is, that CVE is an Exchange RCE on port 443, that means I probably don’t need to install Crowdsec on the other NS8 cluster that is being forwarded to by the reverse proxy NS8.