Search found 8 matches

by ajbird
08 Aug 2023, 12:56
Forum: General Discussion (csf)
Topic: CSF dont stop
Replies: 5
Views: 1588

Re: CSF dont stop

CSF Firewall, CSF Firewall service, remove CSF Firewall, clean iptables...


Tried that.. no difference. even after iptables -f the ips still show as blocked in syslog
by ajbird
05 Aug 2023, 09:47
Forum: General Discussion (csf)
Topic: CSF dont stop
Replies: 5
Views: 1588

Re: CSF dont stop

there has to be a way to fix this from ssh that does not require a reboot
by ajbird
21 Oct 2020, 20:35
Forum: General Discussion (csf)
Topic: csf.ignore... ignored
Replies: 0
Views: 2024

csf.ignore... ignored

Hi there We have an server with CT_SUBNET_LIMIT= "350" however, we do not want this to affect a particular subnet eg 192.168.1.0/24 Immediately, as expected 192.168.1.0/24 triggers csf -t A/D IP address Port Dir Time To Live Comment DENY 192.168.1.0/24 * inout 29m 54s lfd - (CT) subnet 192...
by ajbird
21 Oct 2020, 20:30
Forum: General Discussion (csf)
Topic: csf.ignore Port rules
Replies: 1
Views: 1261

Re: csf.ignore Port rules

same issue here.. individual IPs work but not subnets
by ajbird
08 Oct 2019, 13:13
Forum: General Discussion (csf)
Topic: GLOBAL_DENY v blacklist
Replies: 1
Views: 1865

GLOBAL_DENY v blacklist

Is there any difference / advantage / disadvantage to using GLOBAL_DENY rather than an entry in /etc/csf/csf.blocklists ?
by ajbird
14 Jul 2015, 13:05
Forum: Suggestions (cxs)
Topic: Cxs For Plesk ?
Replies: 1
Views: 8570

Re: Cxs For Plesk ?

+1
this would be great edition to the new plesk extension market..

failing that a command line version that will scan var/www/vhosts ?
by ajbird
28 Dec 2014, 10:46
Forum: General Discussion (csf)
Topic: ip ranges
Replies: 2
Views: 2897

Re: ip ranges

many thanks.. worked a treat
by ajbird
27 Dec 2014, 10:05
Forum: General Discussion (csf)
Topic: ip ranges
Replies: 2
Views: 2897

ip ranges

HI there I am trying to block 202.46.0.0. - 202.46.255.255 with csf -d 202.46.0.0/16 However, my client is still complaining that these IP are trawling the site and I can still see them attached to the server netstat -anp |grep 'tcp\|udp' | awk '{print $5}' | cut -d: -f1 | sort | uniq -c | sort -n 1...