Search found 4 matches
- 06 Nov 2020, 07:20
- Forum: General Discussion (csf)
- Topic: Other ways to specify allowed ports
- Replies: 0
- Views: 1934
Other ways to specify allowed ports
I am trying to standardize my servers better with Puppet. Puppet is very good at building files with multiple lines like csf.allow, but it is more difficult to add multiple values to a single line like the TCP_IN list in csf.conf. I attempted to add partial lines to csf.allow, but that didn't seem t...
- 16 Jun 2020, 17:14
- Forum: General Discussion (csf)
- Topic: Proper way to run firewall with libvirt/qemu guests?
- Replies: 0
- Views: 2330
Proper way to run firewall with libvirt/qemu guests?
I have CSF installed on a Ubuntu 18.04 machine. We just installed libvirt on the machine and have VMs that are using the internal network adapter virbr0. When libvirt starts, it adds the following rules: # Generated by iptables-save v1.6.1 on Tue Jun 16 11:48:26 2020 *nat :PREROUTING ACCEPT [161:110...
- 20 Jun 2014, 23:54
- Forum: General Discussion (csf)
- Topic: CSF Blocking all outbound IPv6 traffic
- Replies: 4
- Views: 7234
Re: CSF Blocking all outbound IPv6 traffic
I also have this issue. I also tried whitelisting the tunnel endpoint in case proto41 is being blocked, but that does not seem to have any effect.
- 17 Nov 2011, 14:39
- Forum: Suggestions (csf)
- Topic: Including WHOIS info in the alert email
- Replies: 1
- Views: 3287
Including WHOIS info in the alert email
I searched for an answer to this question with no success. I have another server running Fail2ban. When an IP is blocked, the alert email includes WHOIS information for that IP address (which usually includes the ABUSE contact). My email client parses that message and allows me to send a message to ...