Yes. First, ensure that the ‘managemanual’ setting in the [banip] stanza of your secast.conf file is set to true.

Next, from the telnet interface to SecAst manually add the IP address to the ban list. For example:

SecAst>banip add
Issued request to add IP Check event log for errors, or use ‘banip list’ to confirm add

After that SecAst will leave the address in your blocked IP list, and never expire the ban.