Community Forums
Connect with us on LinkedIn
+ Reply to Thread
Results 1 to 10 of 10
  1. #1
    Member
    Join Date
    Apr 2005
    Posts
    246

    Default What firewall to use?

    Hi. For the longest time I had only iptables and dos_deflate. Then I had some server attacks and my hosting company (managed dedicated) installed APF. The attacks are now gone and server is running okay, but many people are saying that they cannot access my website at all.

    So I did an "apf -l" to see what rules are getting DROPped. It has several IP ranges, which I have not entered! My hosting company tells me these are default apf rules. How can I disable them, is it advisable to disable them?

    What do people on these forums use? I tried "CSF" but that too was making the server very slow and taking too many resources, so I made it go away.

    Much appreciate any tips and advice. Thanks!

  2. #2
    cPanel Product Evangelist Infopro's Avatar
    Join Date
    May 2003
    Location
    Pennsylvania
    Posts
    7,894
    cPanel/Enkompass Access Level

    Root Administrator

    Lightbulb

    Might want to 'make it come back' that's a really good firewall, IMHO.
    Fav cPlinks this week: Blog - cPanel & WHM 11.32 we love it! | cPanel University study for it! | Attracta is coming! we want this!

  3. #3
    Member
    Join Date
    Apr 2005
    Posts
    246

    Default

    Great thanks. But it has default rules that are blocking my users. How can I disable "default rules" in apf?

  4. #4
    Member
    Join Date
    Aug 2004
    Posts
    472

    Default

    The default rules in the apf are fine. It will not block any legitimate IP ranges. If your customers have issue with viewing the site, ask them for the IP and unblock them in the firewall.
    www.cliffsupport.com
    i WebManager | Access WHM from your iPhone

  5. #5
    cPanel Product Evangelist Infopro's Avatar
    Join Date
    May 2003
    Location
    Pennsylvania
    Posts
    7,894
    cPanel/Enkompass Access Level

    Root Administrator

    Lightbulb

    Quote Originally Posted by erick_paper View Post
    Great thanks. But it has default rules that are blocking my users. How can I disable "default rules" in apf?
    CSF does take a bit of getting used to and some tweaking to get it setup correctly for your specific server. The docs are fine, the forums over at ConfigServer Scripts Forum - Powered by vBulletin have many answered questions and pinned topics to assist as well.

    As chirpy himself might say, RTFM. And I mean that in the nicest way.
    He's got a great product and gone out of his way to spell out how to solve issues and make changes as needed. You only need to go read up on things a bit more over there and I'm sure you'll be able to solve your problems on your own in no time.

    If someone is getting blocked with a default CSF setup, they're most likely doing something incorrectly and need your help to solve it. You'll do that by reading the emails sent from CSF telling you what happened.

    With that Info you can make adjustments to your setup via the nice GUI he's made for us all in your WHM.

    GL
    Last edited by Infopro; 09-11-2009 at 04:21 PM. Reason: I can't type to save my life today..
    Fav cPlinks this week: Blog - cPanel & WHM 11.32 we love it! | cPanel University study for it! | Attracta is coming! we want this!

  6. #6
    d_t
    d_t is offline
    Member
    Join Date
    Sep 2003
    Location
    Bucharest
    Posts
    239

    Default csf +1

    My vote for CSF. It's a great firewall and more than that. It's easy to install and customize, but the configuration interface is a little bit spartan. It may (temporarely) block legitimate IPs if users do strange things (ex. try to log in with wrong password several times). But this is good
    Joomla & Magento cPAddons
    Joomla 2.x added as cPanel Addon (free)

  7. #7
    Member
    Join Date
    Mar 2004
    Location
    UK
    Posts
    36

    Default

    Quote Originally Posted by david510 View Post
    The default rules in the apf are fine. It will not block any legitimate IP ranges. If your customers have issue with viewing the site, ask them for the IP and unblock them in the firewall.
    The latest version of APF does actually block some legitimate IP ranges, I can't remember what they are off by hand by maybe 172.* 173.* and some in the 90 range too I think.

    you can remove these in one of the config files inside the apf folder

  8. #8
    Member
    Join Date
    Mar 2004
    Location
    UK
    Posts
    36

    Default

    or another fix :

    edit conf.apf and change:

    RD_URL="r-fx.ca/downloads/reserved.networks" # reserved.networks url

    to:

    RD_URL="www.cymru.com/Documents/bogon-bn-nonagg.txt" # reserved.networks url

  9. #9
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Apr 2003
    Location
    Houston, TX
    Posts
    378
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    The valid networks being blocked are bogon networks and the apf list isn't up to date.

    I replace:
    RD_URL="r-fx.ca/downloads/reserved.networks"

    in /etc/apf/conf.apf with the following:

    RD_URL="www.cymru.com/Documents/bogon-bn-nonagg.txt"

  10. #10
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Apr 2003
    Location
    Houston, TX
    Posts
    378
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Hah KrstalS you beat me to it!

Similar Threads & Tags
Similar threads

  1. Firewall
    By DReade83 in forum cPanel and WHM Discussions
    Replies: 11
    Last Post: 10-23-2006, 03:59 AM
  2. APF firewall. Daily automated email showing firewall status.
    By Charles Sweeney in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 02-11-2005, 02:52 PM
  3. firewall
    By freeFH in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 08-26-2004, 06:51 PM
  4. best firewall
    By mahdionline in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 06-23-2004, 03:59 AM
  5. Firewall...
    By SoftmegUK in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 05-09-2003, 03:18 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube