FeatureRequest: GeoIP Database

silver_2000
Junior Member
Posts: 115
Joined: 18 Dec 2006, 01:55

Post by silver_2000 »

mickalo wrote:did you encounter any conflicts with the CSF firewall when you installed this blocking tool ??

Mickalo
No conflicts but it appears that CSF or Cpanel has written the changes back out of the IP tables list - meaning - the blocks go away

On another thread - I asked Chirpy if he could consider taking a look and offering advice ...
verdon
Junior Member
Posts: 22
Joined: 11 Dec 2006, 13:49
Location: Norther Ontario, Canada

Post by verdon »

silver_2000 wrote:No conflicts but it appears that CSF or Cpanel has written the changes back out of the IP tables list - meaning - the blocks go away..
verdon wrote:I too am considering trying that tool, or possibly the list at http://www.okean.com/antispam/iptables/ ... .sinokorea

I'm also curious as to combining these with CSF. Is making changes to iptables with csf going to undo the additions done with either of these tools (or vica versa)? Is it possible to get too many lines in iptables? Any advice out there?
I kind of found my own answers with a little refresher reading of the comments in csf.conf. I gather it is possible to get too many lines in the iptables and cause problems with your server, depending on the resources available to you.

As to combining other blocks with CSF, such as http://fixingtheweb.com/country/blocking.html or the okean list, I'm currently experimenting with including one of those as the global csf deny. I think that's working.

I've only skimmed, but can't you use the scripts at fixingtheweb.com to generate a text file that you could then refer to as your global deny list?
Post Reply