Search found 6 matches

by soulshepard
07 Aug 2012, 08:32
Forum: Suggestions (csf)
Topic: c s f -d does not check the csf.ignore
Replies: 4
Views: 4241

c s f -d does not check the csf.ignore

We use csf+lfd and the Directadmin Bruteforce detector. when the da bruteforce detector "detects" it runs this command c s f -d $ip Added by DA BruteForce monitor we noticed that with this method the c s f . p l does not check the csf.ignore but only the csf.allow as the bruteforce detecto...
by soulshepard
04 Mar 2012, 23:48
Forum: Suggestions (csf)
Topic: seperate interface naming and bogon exlusion
Replies: 7
Views: 5905

Re: seperate interface naming and bogon exlusion

chirpy wrote:We've added the LF_BOGON_SKIP option to cater for the bogon issue.
Thanks, really appriciated, we will incorporate it in the default configs

Soul!

ps: other people plese vote for the interface naming option in the csf.allow ;)

<3

:)
by soulshepard
18 Feb 2012, 08:31
Forum: Suggestions (csf)
Topic: seperate interface naming and bogon exlusion
Replies: 7
Views: 5905

Re: seperate interface naming and bogon exlusion

We'll look at adding an option to exclude specific NICs from the BOGON list option as this does make sense. Thank you for considering. However, we're not looking at having separate csf configurations for different NICs at this time. as extra suggestion: If the normal config would be used together w...
by soulshepard
26 Jan 2012, 11:57
Forum: Suggestions (csf)
Topic: seperate interface naming and bogon exlusion
Replies: 7
Views: 5905

Re: seperate interface naming and bogon exlusion

but to disable a feature per nic is really needed if you have multiple interfaces for instance in the csf.allow when i allow IN for a certain protocol then it is allowed on all interfaces in many situation this is not desirable, i want to enable a service on 1 interface. in the readme we saw you can...
by soulshepard
24 Jan 2012, 08:59
Forum: Suggestions (csf)
Topic: seperate interface naming and bogon exlusion
Replies: 7
Views: 5905

seperate interface naming and bogon exlusion

dear all, We really like csf, but in my humble opinion i do miss the definition of interfaces in csf. as a hoster we also use internal network link with a 10.0.0.0/8 range for internal backups so we need to disable bogon network completely enabling this on the public facing interfaces is preferred. ...