Hi, I make a block of /24 IP address on my server but this block still acessing my sites, I already try restart csf, apache and the problem persists, I runn csftest.pl too!
I'm not sure if anyone else is seeing the same trend, but i am noticing a massive increase in wp-login attempts lately. This is something i see in the logs of most domains across most, if not all my hosting servers. The originating countries are all over the world; USA, UK Germany Vietnam, Indonesia to Brasil.
Some domains have login attempt from a staggering 5000~6000 unique IP...
I am trying to use CT_LIMIT to block IPs connecting to my jetty server on port 8443, the connection from specific IP keep in CLOSE_WAIT status and keep opening new connections in CLOSE_WAIT, I configured CT_LIMIT=30, on port 8443 but CSF did not catch this IP and block it,
CSF test script shows Testing xt_connlimit...OK,
how can I figure why CT LIMIT is not working and how to configure it...
I am a very happy user of csf for many years on dedicated and VPS systems.
I have recently setup a dedicated server within my own network and installed csf successfully.
Problem is when I receive emails about logins or check any of the logs, it is only ever reporting the gateway internal IP address.
Scenario:
From a different physical location, using an internet connection not related to my own...
I'm trying to come up with a solution to get a developer that has a dynamic IP through the firewall whenever he tries to access the server. I thought I could give him access to the web UI so he could add his IP whenever it changes but that requires his IP to get access in the first place. Is there some other solution?
Hello;
I have new Centos 7.4 Pure VM and after installing csf getting this Warring:
*WARNING* Cannot use DROP_OUT value of [] on this server, set to DROP
Can anyone help me.
BR
This option can mask a users real IP address and hinder security. You should disable WHM > Tweak Settings > Proxy subdomains
This option in WHM doesn't seem to exist anymore or has since been renamed because I'm not able to find it. Very few results for proxy with none of them to do with what I'm actually looking for.
Since csf/lfd is very important for my server security, I would like with a monitoring script to ensure that csf and lfd are both running and operational. Is there a recommended way to do this ? I am running CentOS 7.
I am thinking about:
- either parsing the output of command systemctl status csf lfd and detect that they are active, and also running for lfd.
- either parsing the output...
I have a site on a WHM/CentOS dedicated server using CSF. This 144.x.x.x server has a client who has a remote database on a different server (37.x.x.x) and he needs to connect his script from the local server over to that 37.x server using a remote MySQL connection.
Up until now all he gets when we try to connect is the error:
IP Be 144.x.x.xFailed to connect to MySQL: (2002) Connection...
The server is receiving repeated connections which are like DOS attempts which seem to be generated from some exploit, possibly Android Stagefright, blocking IP addresses does not seem to help as new IPs appear everyday, this is resulting in heavy use of bandwidth. See sample logs below. Please advise how such connections can be blocked based on user agent or any other way. (i have disabled the...
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum