Page 1 of 1

Csf Block my whitlelist ip

Posted: 19 Jun 2024, 12:47
by Test blogger22
Hi
I have a very bad problem , i put some ip in csf.allow and even in csf.ignore but they still blocked by firewwall.
can anyone help me?

Re: Csf Block my whitlelist ip

Posted: 25 Jun 2024, 04:48
by Sergio
Please, give an example of the message that the IP got when blocked.

Sergio

Re: Csf Block my whitlelist ip

Posted: 26 Jun 2024, 07:46
by Test blogger22
it says" site took too long to respond"
i try to connect to my http port of my server.

Re: Csf Block my whitlelist ip

Posted: 26 Jun 2024, 13:41
by Sergio
Start checking that your port 80 is opened in CSF TCP IN 4/6 and TCP OUT 4/6
and
that your port 443 is opened in CSF TCP IN 4/6, TCP OUT 4/6 and in UDP IN/OUT 4/6.

Re: Csf Block my whitlelist ip

Posted: 26 Jun 2024, 13:49
by Test blogger22
yest it is open , but i cannot reach to it when i turn csf on.
even i put ip in csf.ignore but is still block.

Re: Csf Block my whitlelist ip

Posted: 26 Jun 2024, 15:52
by Sergio
Have you checked that the IP that you are white listening is not in an RBL?

Re: Csf Block my whitlelist ip

Posted: 29 Jun 2024, 08:23
by Test blogger22
sorry , what is RBL?

Re: Csf Block my whitlelist ip

Posted: 05 Jul 2024, 15:07
by smedby2

Re: Csf Block my whitlelist ip

Posted: 06 Jul 2024, 08:12
by Test blogger22
Thanks for help
and yes i checked my ip isn't in RBL.
Sergio wrote: 26 Jun 2024, 15:52 Have you checked that the IP that you are white listening is not in an RBL?

Re: Csf Block my whitlelist ip

Posted: 17 Jul 2024, 01:33
by Sergio
You have to check a few things.
- Does cPhulk is running in your server? If yes, then check if the IP is not being block by cPhulk. If it is, then add your IP on the whitelist in cPhulk.
- Have you tried to add your IP on /etc/csf/csf.ignore ?
If not then, do what the readme on file suggest:

# The following IP addresses will be ignored by all lfd checks
# One IP address per line
# CIDR addressing allowed with a quaded IP (e.g. 192.168.254.0/24)
# Only list IP addresses, not domain names (they will be ignored)

Regards,
Sergio