Community Forums
Connect with us on LinkedIn
  
+ Reply to Thread
Results 1 to 4 of 4
  1. #1
    Member
    Join Date
    May 2008
    Posts
    1,203

    Default Firewalls

    We are having APF firewall installed on our Linuxservers. Are there any other better firewalls to run on RHEL? what about configserver?

  2. #2
    Member shital's Avatar
    Join Date
    May 2007
    Posts
    11

    Default

    Hello,

    You can BFD firewall on server.

    BFD installation
    ============

    wget http://www.rfxnetworks.com/downloads/bfd-current.tar.gz

    tar -xvzf bfd-current.tar.gz

    cd bfd-0.9/

    ./install.sh

    Configuration Steps
    ==============

    vi /usr/local/bfd/conf.bfd

    Find : ALERT_USR="0" CHANGE TO: ALERT_USR="1"

    Find : EMAIL_USR="root" CHANGE TO: EMAIL_USR="your@yourdomain.com"

    Prevent locking yourself out
    =====================

    vi pico -w /usr/local/bfd/ignore.hosts

    add your own trusted IP's Eg : 192.168.8.1

    BFD uses APF' cli insert feature and as such will override any allow_hosts.rules entries users have in-place. So be sure to add your trusted ip addresses to the ignore file to prevent locking yourself out.

    To run the program
    ===============

    /usr/local/sbin/bfd -s


    Also you can install CSF (Config Server Firewall)

    =========================================
    Below is a description how to install CSF (Config Server Firewall)

    I. Installation
    Installation is quite straightforward:

    rm -fv csf.tgz
    wget www.configserver.com/free/csf.tgz
    tar -xzf csf.tgz
    cd csf
    sh install.sh

    If you would like to disable APF+BFD (which you will need to do if you have
    them installed otherwise they will conflict horribly):

    sh disable_apf_bfd.sh

    That's it. You can then configure csf and lfd in WHM, or edit the files
    directly in /etc/csf/*

    csf is preconfigured to work on a cPanel server with all the standard cPanel
    ports open. It also auto-configures your SSH port if it's non-standard on
    installation.

    You should ensure that kernel logging daemon (klogd) is enabled. Typically, VPS
    servers have this disabled and you should check /etc/init.d/syslog and make
    sure that any klogd lines are not commented out. If you change the file,
    remember to restart syslog.

    II. Uninstallation
    Removing csf and lfd is even more simple:

    cd /etc/csf
    sh uninstall.sh

    Regards,
    Shital

  3. #3
    cPanel Product Evangelist Infopro's Avatar
    Join Date
    May 2003
    Location
    Pennsylvania
    Posts
    7,894
    cPanel/Enkompass Access Level

    Root Administrator

    Question

    Quote Originally Posted by thewebhosting View Post
    We are having APF firewall installed on our Linuxservers. Are there any other better firewalls to run on RHEL? what about configserver?
    What happened to this thread that you started another one of the same topic?

  4. #4
    Member
    Join Date
    May 2008
    Posts
    1,203

    Default

    Quote Originally Posted by Infopro View Post
    What happened to this thread that you started another one of the same topic?
    Please close this topic as we have already installed csf on our server as per your advise.

Similar Threads & Tags
Similar threads

  1. Firewalls and security
    By tank in forum Security
    Replies: 2
    Last Post: 04-19-2011, 11:52 AM
  2. Has anyone tried other firewalls
    By yamaharr1 in forum cPanel and WHM Discussions
    Replies: 6
    Last Post: 10-31-2008, 06:46 AM
  3. firewalls
    By silvernetuk in forum cPanel and WHM Discussions
    Replies: 7
    Last Post: 01-28-2003, 08:55 AM
  4. firewalls
    By annualhost in forum cPanel and WHM Discussions
    Replies: 17
    Last Post: 12-13-2002, 01:28 PM
  5. Firewalls
    By netarus in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 11-09-2002, 11:09 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube