Loghound has three rule lists, and each one can be exported and imported as a CSV file. It is the fastest way to give a second installation the rules the first one earned, or to keep a copy before you change them.
- Exclusions, in Settings: requests never recorded. Exclusions.
- Attack patterns, in Settings: yours and the shipped defaults, with which ones are on. Attack patterns.
- Live exclusions, on the Live page: what is hidden from the live stream, built-in groups and your own rules. Live.
Press CSV on the card. You get the rules as stored, with the same column names the card shows (Hostname, Field or Kind, Pattern, On). A cell that a spreadsheet would read as a formula is written as plain text, so opening the file in Excel, LibreOffice or Google Sheets never runs anything a visitor chose.
- Under the card, choose the file in Import from CSV. Use a file exported from the same card, or one you made with the same column names.
- The file is read in your browser and sent as text. Nothing is uploaded, and a file over 500 KB is refused.
- Its rules are added to the ones already there. Duplicates are skipped.
- Every row is checked like a rule typed by hand: a pattern that does not compile is refused and reported.
- For attack patterns and live exclusions, shipped defaults and built-in groups are switched on or off as the file says.