Blocked connections.
Posted: 17 Aug 2021, 11:47
Hello.
CSF plugin is installed on the Directadmin control panel.
Recently, possibly after updating the CSF, when performing a backup from the panel via FTP, we found that connections were blocked on the allowed port.
Configuration:
With these ports open, it's not entirely clear why connections are blocked:
Thanks for any help.
CSF plugin is installed on the Directadmin control panel.
Recently, possibly after updating the CSF, when performing a backup from the panel via FTP, we found that connections were blocked on the allowed port.
Configuration:
Code: Select all
TCP_IN 20,21,22,25,53,80,110,143,443,465,587,993,995,2222,35000: 35999
TCP_OUT = 20,21,22,25,53,80,110,113,443,587,993,995,3306,2222,43,35000: 35999
Code: Select all
Aug 17 13:15:26 xx kernel: Firewall: *TCP_OUT Blocked* IN= OUT=em1 SRC=x.x.x.x DST=x.x.x.x LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=7861 DF PROTO=TCP SPT=56420 DPT=49152 WINDOW=29200 RES=0x00 SYN URGP=0 UID=99 GID=99
Aug 17 13:15:27 xx kernel: Firewall: *TCP_OUT Blocked* IN= OUT=em1 SRC=x.x.x.x DST=x.x.x.x LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=7862 DF PROTO=TCP SPT=56420 DPT=49152 WINDOW=29200 RES=0x00 SYN URGP=0 UID=99 GID=99
Aug 17 13:15:27 xx kernel: Firewall: *TCP_OUT Blocked* IN= OUT=em1 SRC=x.x.x.x DST=x.x.x.x LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=65510 DF PROTO=TCP SPT=52520 DPT=53461 WINDOW=29200 RES=0x00 SYN URGP=0 UID=99 GID=99
Aug 17 13:15:28 xx kernel: Firewall: *TCP_OUT Blocked* IN= OUT=em1 SRC=x.x.x.x DST=x.x.x.x LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=65511 DF PROTO=TCP SPT=52520 DPT=53461 WINDOW=29200 RES=0x00 SYN URGP=0 UID=99 GID=99