Search found 74 matches

by aww+
24 Aug 2015, 15:09
Forum: Suggestions (csf)
Topic: feature request: UI_IP = 12.34.56.78
Replies: 2
Views: 3609

feature request: UI_IP = 12.34.56.78

Currently CSF has UI_PORT but it still binds to all IPs on the server I'd like to limit it to one IP, ie. UI_IP Will your perl code allow you to force it to bind to only one IP ? Thanks for considering and keep up the brilliant work! ps. I don't need IPv6 but eventually someone is also going to ask ...
by aww+
11 Apr 2015, 13:11
Forum: General Discussion (csf)
Topic: manual upgrade is same process as install, correct?
Replies: 2
Views: 2475

manual upgrade is same process as install, correct?

Because of OVH's bug with blocking download.configserver I need to manually upgrade our servers. Just wanted to be certain the install.sh is smart and can determine upgrade vs install by itself. Looking at the source in CSF, it appears so, but just wanted to double check I wasn't missing any environ...
by aww+
02 Jan 2015, 14:39
Forum: Suggestions (csf)
Topic: feature request: asn lookup on ip block via maxmind asnum db
Replies: 3
Views: 4443

Re: feature request: asn lookup on ip block via maxmind asnu

Sorry for the follow up but some email system like gmail that try to auto-http text that looks like links is turning the entire line into a link: ie. this becomes a link 1.2.3.4/4.3.2.1.cpe.net.cable.rogers.com/[AS812 Rogers Cable Communications Inc.] Would it be easy without breaking anything to pu...
by aww+
01 Jan 2015, 09:48
Forum: Suggestions (csf)
Topic: feature request: asn lookup on ip block via maxmind asnum db
Replies: 3
Views: 4443

Re: feature request: asn lookup on ip block via maxmind asnu

Fantastic!

Wow I need to make another donation to csf soon.

Keep up the great work.
by aww+
28 Dec 2014, 14:56
Forum: General Discussion (csf)
Topic: does lfd deal with log rotation or does it need restart?
Replies: 1
Views: 1992

does lfd deal with log rotation or does it need restart?

Will lfd deal with logs going away and new files being created, ie. how logrotate works?

Or do we need to tell logrotate to restart lfd?
by aww+
18 Dec 2014, 19:07
Forum: General Discussion (csf)
Topic: including additional external lists into csf.deny?
Replies: 6
Views: 4655

Re: including additional external lists into csf.deny?

One last question on this (sorry) do included files count against DENY_IP_LIMIT ?

I suspect not, but want to be certain.

Also discovered you can do includes inside included files, nice.
by aww+
17 Dec 2014, 05:38
Forum: General Discussion (csf)
Topic: including additional external lists into csf.deny?
Replies: 6
Views: 4655

Re: including additional external lists into csf.deny?

Oh that is absolutely perfect. Somehow missed that in the documentation. Thanks! So to be clear they do NOT need the "do not delete" and that include line will never be removed and those external lists will never be trimmed. It would probably be greedy to wish for them to support wildcards...
by aww+
16 Dec 2014, 19:56
Forum: Suggestions (csf)
Topic: feature request: asn lookup on ip block via maxmind asnum db
Replies: 3
Views: 4443

feature request: asn lookup on ip block via maxmind asnum db

lfd ip blocks currently report the country via maxmind country db but maxmind also has a very helpful asn db http://dev.maxmind.com/geoip/legacy/geolite/#Downloads I'd love the report inside csf.deny and the emails to also show the asn info maybe as an option in csf.conf ? see, not so helpful 177.71...
by aww+
16 Dec 2014, 07:34
Forum: General Discussion (csf)
Topic: including additional external lists into csf.deny?
Replies: 6
Views: 4655

Re: including additional external lists into csf.deny?

Could I abuse the /etc/csf/csf.block.NAME files for this purpose?

If I make a /etc/csf/csf.block.example file will csf import it even if there isn't a rule in csf.blocklists for it?

Will it leave the file alone and never delete it?

Oh I see they moved to /var/lib/csf/csf.block.NAME
by aww+
16 Dec 2014, 07:30
Forum: General Discussion (csf)
Topic: understanding LF_BLOCKINONLY behavior
Replies: 1
Views: 2003

understanding LF_BLOCKINONLY behavior

In theory if LF_BLOCKINONLY is set to 1, shouldn't the server be able to make outgoing http requests to another ip listed in csf.deny? Because it cannot. If 1.2.3.4 is listed in csf.deny and LF_BLOCKINONLY is set to 1, a wget to 1.2.3.4 will fail (where 1.2.3.4 is just an example obviously) Or does ...