Hello, thanks for the great work you did to make all this effort on this awesome firewall.
Today i changed the default SSH port from 22 to 2022 on my vps, opened it in TCP_IN TCP_OUT but i saw in the CSF that it still says 22 as the SSH port. Is that a problem ?
Steps i took for the change:
1. Edited /etc/ssh/sshd_config and changed the port 22 to 2022 and deleted the #
2. Restarted SSHD...
Hello,
i'm a few servers with webmin and when i install csf firewall and own module in some server i see a page with css of authentic theme , like this
in other server i see a page with default css of csf firewall (similar in cpanel) like this
how i change first view and use second view (default css firewall (similar in cpanel) also in webmin.
After a fresh install of csf, I'm getting this error while trying to start
Jun 07 11:17:27 mail.aria systemd : Starting ConfigServer Firewall & Security - lfd...
Jun 07 11:17:27 mail.aria lfd : Can't use an undefined value as a symbol reference at /usr/sbin/lfd line 7186.
Jun 07 11:17:27 mail.aria systemd : lfd.service: Control process exited, code=exited status=25
Jun 07 11:17:27 mail.aria...
General info:
Fresh installations, no other firewall running
Linux Debian 9.3 #1 SMP Debian 4.9.65-3+deb9u2 (2018-01-04) x86_64 GNU/Linux
CSF/LFD version 11.05 or 11.06
Config file excerpt:
LF config from /etc/csf/csf.conf
Recently one of my shared servers received several hits from 2 or 3 IP addresses, these hits increased server load average to a huge number, I will paste the output kernel messages I got at the console while under this attack, what csf option would help me prevent this kind of attack? (ports 585 and 1270 are not allowed under tcp in csf configuration option):
I had a Joomla site hacked last night, they relayed some emails. Trying to figure out how they got in. Looks like they used sendmail. Here are the CSF notifications (without actual domain name or email addresses). The configuration.php file referred to as possible script is the Joomla file last updated 2016. Don't think that was part of issue, but they probably used it to pull the title of the...
I have a very weird problem on a server which has CSF/LFD installed. For long CSF/LFD just worked very fine. But today, while watching some logs, I noticed that countries which are in CC_DENY were not blocked anymore.
Trying to understand this problem, I 1st blamed GeoIP. but no, GeoIP data is updated and my geoiplookup responses are correct.
Then, to my surprise, I think I found out why...
In our WHM (CPanel) lfd service is down (after we have root partition full problem, few days ago)
As soon as fix the partition (free up some space) problem, lfd didnt start up and we cannot start it out yet.
At lfd.log file we have only this error (repeatable):
Apr 13 15:37:16 cpanel1 lfd : *Error* LF_DAEMON not enabled in /etc/csf/csf.conf, at line 82
Apr 13 15:37:16 cpanel1 lfd :...
This morning I received an email with error output from a cron job which ran the command /usr/sbin/csf -u
Upgrading csf from v12.03 to 12.04...
Retrieving new csf package...
...5%
Unpacking new csf package...
gzip: stdin: unexpected end of file
tar: Unexpected EOF in archive
tar: Unexpected EOF in archive
tar: Error is not recoverable: exiting now
sh: install.sh: No such file or directory...
I recently started receiving email notifications about Excessive resource usage by mysqld_safe. I did some forum research and couldn't find the root cause of that. Everyone has suggested to disable the notifications by modifying /etc/caf/csf.pignore file.
At the same time, I have also been receiving email notifications every time I log in via SSH or cPanel / WHM. Does anyone know what's causing...
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum