Search found 63 matches

by Firewalls4Life
18 Aug 2023, 19:58
Forum: General Discussion (csf)
Topic: CSF stopped blocking temp nor perm
Replies: 1
Views: 1802

Re: CSF stopped blocking temp nor perm

I'm also seeing this symptom but on RHEL 7.9. I've noticed that my services aren't restarting when CSF -ra reports that they were restarted. Checking how long ago the services were restarted show that they never correctly stopped and started; systemctl status csf.service and systemctl status lfd.ser...
by Firewalls4Life
17 Aug 2023, 19:10
Forum: General Discussion (csf)
Topic: CSF and LFD not being restarted correctly on RHEL 7.9
Replies: 0
Views: 1374

CSF and LFD not being restarted correctly on RHEL 7.9

I was trying to figure out why changes to blocklists and firewall configurations didn't seem to be taking effect. After digging into it more today, I think I have found a potential bug. When restarting csf and lfd through csf -ra or through the web interface, the web interface reports back that CSF ...
by Firewalls4Life
17 May 2023, 18:40
Forum: MailScanner Front-End
Topic: Integration for RoundCube Report Junk action
Replies: 1
Views: 3584

Integration for RoundCube Report Junk action

With MailScanner and MailScanner Front End installed, is the "Report Junk" setting in the end user's email interface of RoundCube integrated to MailScanner's learning? If not, could that feature be added to have MSFE become the handler for when this action is called from RoundCube? At leas...
by Firewalls4Life
06 May 2022, 22:37
Forum: General Discussion (cmq)
Topic: Command line equivalent for...
Replies: 4
Views: 11617

Re: Command line equivalent for...

I thought I would post this since I was needing something to help. # Check the Email Delivery queue for From [bounce] and delete them exim -bpa -C /etc/exim_outgoing.conf | grep "<>" |awk -F" " '{print $3}' | while read line do exim -C /etc/exim_outgoing.conf -Mrm $line done All...
by Firewalls4Life
14 Apr 2022, 15:36
Forum: MailScanner Front-End
Topic: Net SMTP Error when reporting to SpamCop from MailScanner Front End
Replies: 0
Views: 1151

Net SMTP Error when reporting to SpamCop from MailScanner Front End

When doing "Learn as Spam & Report" to learn and report multiple messages, I occasionally get this error on a few of the messages: SpamCop report to vmx.spamcop.net failed: Net::SMTP error How can I best debug this and investigate it further? Perhaps there is a more verbose logging opt...
by Firewalls4Life
08 Apr 2022, 17:12
Forum: MailScanner Front-End
Topic: Migrate MailScanner Front End configs to new Server
Replies: 2
Views: 1439

Migrate MailScanner Front End configs to new Server

I am migrating from my old WHM server to a newly built one. I have MailScanner and MSFE installed, and am now looking for a way to migrate the configuration files for MSFE to my new server. I've already moved the license, so I'm unable to access the MSFE user interface in WHM on my old server. Is it...
by Firewalls4Life
29 Apr 2020, 23:04
Forum: General Discussion (cxs)
Topic: Prerequisite Check for CXS Install
Replies: 1
Views: 4611

Re: Prerequisite Check for CXS Install

Hoping to see this feature added...

@Sarah @ForumAdmin
by Firewalls4Life
29 Apr 2020, 22:59
Forum: General Discussion (csf)
Topic: LFD Blocks Creating Duplicate Entries in csf.deny
Replies: 1
Views: 3572

Re: LFD Blocks Creating Duplicate Entries in csf.deny

I do see one anomaly: 85.209.0.163 # lfd: (sshd) Failed SSH login from 85.209._0.163 (-): 5 in the last 86400 secs - Tue Apr 28 06:52:07 2020 This one was not duplicated, but clearly something funky happened in the notes being written, as it put an underscore into the commented IP address. 85.209._0...
by Firewalls4Life
29 Apr 2020, 22:57
Forum: General Discussion (csf)
Topic: LFD Blocks Creating Duplicate Entries in csf.deny
Replies: 1
Views: 3572

LFD Blocks Creating Duplicate Entries in csf.deny

I have noticed a few instances where LFD triggers have resulted in duplicate entries being added to /etc/csf/csf.deny , one after another. It isn't happening with all IP addresses or all service triggers either; it is only happening with IP addresses that appear to be correlated originating from a s...