Is mod_sec
and the OWASP rule set adequate to protect against DDoS and DoS attacks or would you recommend taking additional steps, e.g. blocking suspicious IP addresses which have been identified by mod_sec
using iptables
?
Would you recommend activating mod_evasive
in addition to mod_sec
?
What about ShoreWall
and CSFirewall?
Thank you!