LiteSpeed Technologies
Download Download     Blog Blog     Wiki Wiki     Forum Forum     Store     Contact Contact    

Go Back   LiteSpeed Support Forums > LiteSpeed Web Server > Feedback/Feature Requests > CSF Firewall

Reply
 
Thread Tools Display Modes
  #1  
Old 12-26-2009, 04:01 PM
rlshosting rlshosting is offline
Member
 
Join Date: Dec 2009
Posts: 21
Default CSF Firewall

Would it be possible to add compatibility to this?

Thanks a million.
Reply With Quote
  #2  
Old 12-26-2009, 08:48 PM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,590
What do you mean "compatibility to CSF Firewall"?
Exclude from LFD?
Reply With Quote
  #3  
Old 12-26-2009, 09:21 PM
rlshosting rlshosting is offline
Member
 
Join Date: Dec 2009
Posts: 21
I said on the configserver forums:
Quote:
Is this plugin compatible with it? I see no IPs blocked on my server.
Then I said:
Quote:
Nevermind. I see emails but no IPs in csf.deny.
Then the admin said:
Quote:
No, there are no regex's to monitor that applications logs. You would have to write your own using regex.custom.pm
Reply With Quote
  #4  
Old 12-28-2009, 11:58 AM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,590
Yes, CSF need to be configured to parse error log file for detected IP attacking the server.
We will leave it for CSF developer or someone familiar with their regex setup.
Reply With Quote
  #5  
Old 12-28-2009, 12:17 PM
rlshosting rlshosting is offline
Member
 
Join Date: Dec 2009
Posts: 21
Any other firewalls you recommend that may work better with lite speed? APF maybe or does it work fine without any other firewall and just iptables?
Reply With Quote
  #6  
Old 12-28-2009, 12:40 PM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,590
We recommend using fail2ban in this regard.
Reply With Quote
  #7  
Old 12-31-2009, 09:22 AM
khatfield khatfield is offline
Member
 
Join Date: Dec 2007
Posts: 10
So you're saying there is a log that can be parsed to block IP's via the local server firewalls?
Reply With Quote
  #8  
Old 12-31-2009, 12:14 PM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,590
Yes, LSWS or LSLB log attacking IP addresses to main error log.
Reply With Quote
  #9  
Old 01-02-2010, 08:15 PM
ffeingol ffeingol is offline
Senior Member
 
Join Date: Jul 2007
Location: /dev/null
Posts: 290
At last look LSWS writes out the 'mod_security' records slightly differently than actual mod_security. This causes CSF to not parse/pick up the LSWS mod_security log records. I can post more details if necessary.
Reply With Quote
  #10  
Old 01-05-2010, 12:41 PM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,590
Please check the latest 4.0.12 release, if anything still prevent CSF from pickup it, we will fix.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -7. The time now is 08:13 AM.



- Archive - Top
© Copyright 2003-2011 LiteSpeed Technologies, Inc. All rights reserved. Privacy Policy.