CSF is great. I always install this after a clean Virtualmin setup. It is very powerful but easy to learn. Just make sure you dont disable/enable options you dont understand, as that may cause some unexpected behaviour. There are some good online FAQs online to get started with the basics. Personal preference but I like CSF a lot.
Using for many years to.
While the GUI is also very easy to block or unblock very simple and fast IPās , and some overview of the logs there.
The country block IPās you have to take care then , while consumes and mem and make the vps slow network⦠timeouts. (wasnāt sure but disabled the country blocks function on one and was faster and problems gone there)
CSF is very good, Iāve used it for years. If allowed it will fill syslog with lots of iptables entries but these can be sent to another log. You have to create the new log and point csf towards it in the csf.conf
look for the paths to the logs.
CSF is excellent. Much better than fail2ban in my opinion. Iāve even created an Ansible playbook to update LFDās regex.custom.pm weekly from the mitchellkrogza badbots list.
also here.
csf is great, i use it from many years without problem.
i used in all my webmin installations, all virtualmin ā¦
i used also in proxmox from protect my server and close all port , except for my ips (office and some vps server).
of course without integration in webmin.
I love CSF! IMHO, it is far better than FirewallD + fail2ban.
LFD (log file watcher daemon) is great. I donāt care for fail2ban, though it can work.
I also really love the clustering feature of CSF. We have about 10 hosts in our CSF cluster. I particularly like the clustered brute force attack protection.
This page is aging, so if you notice any errors or have any specific questions, please ask:
@CapstoneWorks and @sonoracomm i really appreciate your thoughts. Iāve set aside some time at the weekend to install and get it working to my satisfaction.
Better not.
If someone from out your IP then try hacking or spamming you have a problem, āhackersā example if a device in office or someoneās home working for you is hacked , or a person at your office connection try toā¦
Also many forget to āblacklistā the ones after wo ARE FIRED or not working at your company anymore!!! ( get then from whitelist is then also often forgotten)
Also good to know if you do something wrong where csf is triggered if so, you can then use other connection or vpn to reach your BOX is so.!
I noticed in your link above that you used port 10000, the default for Webmin. I had to change that to another port that Cloudflare doesnāt block. So do I just simply replace the port you have given with the port I use?
Probably the most trouble-free piece of software Iāve ever used. Also, if you read all the documentation, itās like a mini-degree in server security.