I have LiteSpeed WAF enabled, but there is no log file with log level 9?! As I know from ModSecurity in WHM (currently disabled) there are frequently attacks, so why is there no log file with LS WAF? What else has to be done to get it work? Do I have to add rules?
This LSWS web console settings for LSWS native virtual hosts. On WHM/cpanel, you should not use these settings. Instead, enabling ModSecurity through WHM (which modify the apache configurations).
It is interesting to think about. I can appreciate it could have a faster response time in the case of a new exploit. Does aws itself run WAF in front of any of its own services that you are aware of? Would it be odd or at least inconsistent if they didn't?