csf

  1. J

    csf / idf blocking IP but not putting it in deny file?

    Today, twice we found that someone's IP had been blocked in the firewall, but we could not find their IP in the /etc/csf/csf.deny file. Tried rebooting csf with service csf restart And even tried restarting iptables, then csf again, but this did not clear the issue. The issue was not...
  2. D

    CSF Warning Query

    I have the following warnings in my CSF Security Check screen: /dev/shm isn't mounted with the noexec,nosuid options (currently: none). You should consider adding a mountpoint into /etc/fstab for /dev/shm with those options The servers runlevel is currently set to 4. For a secure server...
  3. Z

    csf and lfd timeouts?

    Is there something in csf / lfd that may cause occasional timeouts for visitors? I'm getting a few good complaints about that and not sure how to trace this as I'm not provided any info on clients end to trace the problem
  4. M

    csf dynamic iptable logging

    I was looking for a way to use something other than the iptables analyzer (fwlogwatch) that csf provides. I found http://www.gege.org/iptables/ This allowed for multiple systems to populate a single db and pull reports from that db (search by port, by host, top offending hosts, etc). I found...
  5. R

    CSF / LFD issue

    Why am I getting clients complaining of such un-necessary blocks? Sample: 200.52.92.166 # lfd: 5 (webmail,cpanel) login failures from 200.52.92.166 - Wed Nov 8 17:34:44 2006 168.144.108.18 # lfd: 5 (pop3d) login failures from 168.144.108.18 - Wed Nov 8 19:55:50 2006 24.184.144.232 #...
  6. R

    csf / lfd keeps blocking pop3 users

    xxx.xxx.105.159 # lfd: 5 (pop3d) login failures from xxx.xxx.105.159 - Thu Nov 2 23:37:51 2006 This has happened numerous times to this one person. Why is that? The person is not failing to login to pop3 5 times at all.
  7. C

    ip / csf firewall issue

    I installed chirpy's csf / lfd firewall and when starting firewall I get this Error: IP [ipaddress] is listed twice in ifconfig!, at line 657 How do I fix this? the security check option in csf shows this "You have a nobody cron log file - you should check that this has not been...
  8. C

    csf / lfd

    I installed chirpy's csf / lfd firewall and when starting firewall I get this Error: IP [ipaddress] is listed twice in ifconfig!, at line 657 How do I fix this? the security check option in csf shows this "You have a nobody cron log file - you should check that this has not been...
  9. K

    CSF Firewall: *TCP_OUT Blocked

    Just installed CSF firewall on another server but am getting some IPs blocked for some reason, though their not listed in csf-deny ??? Any ideas ?
  10. M

    CSF issues with log files

    Ok, so I thought CSF would automatically limit the size of the log. I guess not, I now have a HUGE log for it and that isn't good. What do I need to do so the log doesn't get so large. If I need to SSH in, what file(s) would I remove so reset the log? Do I just delete these files or what...
  11. M

    CSF Log File Questions

    okay, so I just installed this a few hours ago. I am looking at the log summary and this is what I am seeing : Oct 09 00:34:06 Oct 09 00:34:34 00:00:00:28 Firewall: *TCP_IN Blocked* eth0 tcp some.server.ip 25 my.server.ip 35161 -af-p- Pretty much every line is port 25 and a few which...
  12. mickalo

    CSF Firewall Suggestion

    Hello, it would be nice to implement into the CSF firewall, for the LF_HTACCESS and LF_CPANEL login failures, some sort of a flag/setting for either a permenate or temporary type block. Just a suggestion :) thx's Mickalo
  13. H

    csf iptables problem

    Hi Everyone I am installing csf however I get the following iptable error, please can someone tell me what it means Error: iptables command [/sbin/iptables -v -I OUTPUT 2 -i eth0 -j GDENY] failed, at line 383
  14. verdon

    iptables flushing / csf restarting

    A couple days ago, my server seemed to crash while re-starting csf. I had to get my DC to disable the firewall and re-boot from console. Since then, although csf and lfd seem to be running OK and are configured correctly, it seems as if something is causing iptables to flush appx every 5...
  15. konrath

    CSF and APF

    Hello Is possible I can use CSF and APF in same time in same server? You already tried this? CSF has more resources and is interested in testing Thank you Marcelo