I cannot block an IP [closed]

Closed. This question is off-topic. It is not currently accepting answers. Want to improve this question? Update the question so it’s on-topic for Server Fault. Closed 6 years ago. Improve this question I have a redirect rule on my CSF like the below; 17.1.1.13|80|27.5.5.22|80|tcp 17.1.1.13 is my firewall(csf) and 27.5.5.22 is my web server address. … Read more

Not using SSH Pubkey Authentication is really serious security flaw compare to regular Password Authentication

How would using PubkeyAuthentication would be more secure than using PasswordAuthentication, considering the following facts: Default SSH port is moved from its default Firewall blacklists an IP after few unsuccessful tries Password looks pretty complicated (14-20 senseless characters) Answer Your password has 12 characters, which at 6 bits per character is 72 bits of randomness. … Read more

CSF *Port Scan* detected – shared hosting [closed]

Closed. This question is off-topic. It is not currently accepting answers. Want to improve this question? Update the question so it’s on-topic for Server Fault. Closed 7 years ago. Improve this question We modified a few options in ConfigServer Firewall configuraion. Ever since the CSF blocking a lot of IP address. Following print sreen: http://oi60.tinypic.com/kdlnh3.jpg … Read more

CentOS – how to tell what conf file CSF (firewall) is using? csf.conf then restart not updating [closed]

Closed. This question is off-topic. It is not currently accepting answers. Want to improve this question? Update the question so it’s on-topic for Server Fault. Closed 6 years ago. Improve this question in /etc/csf/csf.conf the following is setup LF_CPANEL = “5” LF_CPANEL_PERM = “3600” restarting csf by doing the following csf -r does not seem … Read more

How to connect to our distant server using a local hostname from dyn or -noip on local computer client instead of computer ip?

We using CSF as firewall on CPANEL. We blacklisted all countries except few. Within the CSF there is a dyddns function allowing a FQDN to connect through… We then set up a no-ip.com account with IP/Target being our local computer / ISP public IP. Knowing that home IP changes, we were trying to get the … Read more

cPanel server – Dovecot logins failing on specific IP address [closed]

Closed. This question is off-topic. It is not currently accepting answers. Want to improve this question? Update the question so it’s on-topic for Server Fault. Closed 5 years ago. Improve this question I’m having a strange issue with one of our cPanel/WHM servers where it appears to be failing dovecot (IMAP/POP3) logins only from a … Read more

CSF on CentOS not removing tempban/tempdeny

I have CSF v5.12 (generic) installed on my CentOS 4.4 server, and am trying to use the tempban/tempdeny feature to temporary add a firewall block to a specific IP. (I am building a PHP script which needs to block abusive users for an hour) The command I am running is: [root@domfe01 csf]# /usr/sbin/csf –tempdeny 175.107.146.57 … Read more

Munin FW_Conntrack Timing Out

I recently installed CSF firewall. Immediately after this, my Munin has stopped showing me graphs for Connections through firewall and ipconntrack. I looked into log files and found this 2011/02/27-19:45:01 CONNECT TCP Peer: “192.168.156.237:57918” Local: “192.168.170.112:4949” 2011/02/27-19:45:16 [18459] Service ‘fw_conntrack’ timed out. 2011/02/27-19:45:29 [18459] Service ‘fw_forwarded_local’ timed out. Any help as to whats happening? How … Read more

Allow IP range through linux firewall

I need to set up a rule to allow ALL outgoing UDP connections on my VPS. I am not sure what I should be using. I have tried: udp:out:d=1_9000:d=* in my csf.allow but its not working (and it was a guess on all accounts). Any ideas? Thanks. EDIT: I have tried: udp:out:d=1_9000:d=IPHERE and it works … Read more

Allow all IPs through a specific port range in CSF

How can I do this? For UDP it seems to work like this: udp:out:d=1_9000:d=0.0.0.0/0 but it doesn’t seem to work when I change it to TCP and I need to enter a specific IP like tcp:out:d=25277:d=175.199.87.36 and tcp:in:d=25277:d=175.199.87.36. Am I doing something wrong? Basically, I need to allow ANY ip address access through a specific … Read more