Search found 1040 matches

by Sergio
29 Feb 2024, 04:48
Forum: General Discussion (csf)
Topic: High number of ICMP ping packets ONLY when CSF is on
Replies: 4
Views: 191

Re: High number of ICMP ping packets ONLY when CSF is on

Sorry if that didn't help. But in there you can read a complete info about CloudFlare, that may be can give you a light on what else you could check. My apologize in trying to help you. 27. CloudFlare ############## This features provides interaction with the CloudFlare Firewall. As CloudFlare is a ...
by Sergio
27 Feb 2024, 23:42
Forum: MailScanner Front-End
Topic: Phishing fight with spamassassin and Mailscanner Front End and integration of openphish, phistank, phishstats, mailscane
Replies: 1
Views: 473

Re: Phishing fight with spamassassin and Mailscanner Front End and integration of openphish, phistank, phishstats, mails

This would be a great addition to MailScanner FE.

Please Sarah and Jonathan, Could you please check this and see if this could be added on the next MFE update? It will be a nice tool for fighting against PHISHING.

Regards,
Sergio
by Sergio
27 Feb 2024, 23:23
Forum: General Discussion (csf)
Topic: CSF SMTP Auth Blocking Issue for Mailgun
Replies: 4
Views: 419

Re: CSF SMTP Auth Blocking Issue for Mailgun

Have you tried to add MAILGUN IPs in CSF white list?

Check https://www.webhostingtalk.com/showthread.php?t=1683550
read the 3rd post that will give you idea on how to get MAILGUN IPS

Sergio
by Sergio
27 Feb 2024, 23:16
Forum: General Discussion (csf)
Topic: How to unblock IP blocked by LFD on a blocklist
Replies: 1
Views: 92

Re: How to unblock IP blocked by LFD on a blocklist

Hi. Go to CSF, then go to "LFD BLOCKLISTS", look in there the blocklists that you are using. Check if the IP is blocked by any of the BLOCK LISTS that you are using, to do that go to /var/lib/csf and search the IP on all the /var/lib/csf/csf.block.NAME black lists in there. The next step w...
by Sergio
27 Feb 2024, 22:20
Forum: General Discussion (csf)
Topic: High number of ICMP ping packets ONLY when CSF is on
Replies: 4
Views: 191

Re: High number of ICMP ping packets ONLY when CSF is on

Hi.
Please read https://download.configserver.com/csf/readme.txt
maybe some of your questions will be answered there.

Sergio
by Sergio
27 Feb 2024, 22:12
Forum: General Discussion (csf)
Topic: Custom REGEX rules for CSF.
Replies: 92
Views: 1859234

Re: Custom REGEX rules for CSF.

Hi. This area is not to resolve doubts about REGEX rules, please use the regular forum.
When you move your question to that area I will answer it there, thank you.
Sergio
by Sergio
03 Feb 2024, 01:18
Forum: General Discussion (csf)
Topic: Barracuda RBL download anywhere or other comparable?
Replies: 1
Views: 247

Re: Barracuda RBL download anywhere or other comparable?

Are you using ModSecurity?
Does ModSecurity gives you the rule number that the offending IPs are triggering?
If so, then you can block the attacks in realtime creating your own CSF rules.

Sergio
by Sergio
25 Jan 2024, 20:57
Forum: MailScanner
Topic: Out of the box spam filters trapping MORE than MailScanner
Replies: 1
Views: 880

Re: Out of the box spam filters trapping MORE than MailScanner

The best thing is to create your own spamassassin rules for the spam that is not catched by MSFE and assign a very high score. Then create rules for CSF (firewall) to block the server that sent the spam and at last another CSF script to check if more that 10 IPs from the same IP range have been send...
by Sergio
25 Jan 2024, 20:41
Forum: General Discussion (csf)
Topic: Allow specific country for specific user
Replies: 3
Views: 486

Re: Allow specific country for specific user

Yes, try adding that specific IP on the ALLOWED IP list

Sergio
by Sergio
24 Jan 2024, 17:30
Forum: MailScanner Front-End
Topic: Please add a global domain button for block or allow in MSFE.
Replies: 0
Views: 689

Please add a global domain button for block or allow in MSFE.

Righ now MailsCanner Front-End just have 4 buttons when checking an email, they are: BLACKLIST EMAIL, BLACKLIST DOMAIN, WHITELIST EMAIL and WHITELIST DOMAIN. Would you please consider 2 more: BLACKLIST *.DOMAIN AND WHITELIST *.DOMAIN ? Right now there a thousand of attacks from domains like: root@bn...