Chirpy

Chirpy

New csf v3.34

Changes: Modified regex matching to allow for trailing spaces in log lines Modified PT_LOAD routine to prevent multiple triggers resulting in more than one alert being email sent Removed the need for NETSTAT from lfd to reduce overheads and improve…

New ClamAV v0.93.1

Changes: This version improves handling of PDF, CAB, RTF, OLE2 and HTML files and includes various bugfixes for 0.93 issues If you use MSFE you can upgrade using the UI.

New csf v3.33

Changes: Modified skip for su login checking from root to cater for (uid=0) Added option SYNFLOOD_BURST to allow configuration of –limit-burst when SYNFLOOD is enabled. Changed default values Added to –grep searches to csf.deny and temporary blocks in addition to…

New csf v3.32

Apologies for the multiple releases today:Changes: Modified SSH regex to check for ipv6 addresses Added another regex to improve SSH matching

New csf v3.31

Changes: Modified -denyrm to abort if left blank instead of clearing all blocks Added lfd check for existing temporary block to avoid duplicates Fixed regex handling for courier-imap POP and IMAP login failures Added –full-time to the ls command for…

New csf v3.30 (Security Fix)

Changes: Security Fix: lfd vulnerabilities found which could lead to Local and Remote DOS attacks against the server running csf+lfd The DOS attacks could make lfd block innocent IP addresses and one attack could cause lfd to deplete server resources…

New csf v3.28

Changes: Fixed a bug with LT_POP3D and LT_IMAPD introduced in v2.88 which broke login tracking Modified relay tracking to not ignore RELAYHOST IP’s Modified LF_SSH_EMAIL_ALERT to not ignore RELAYHOST IP’s LF_SUHOSIN will now skip matches for “script tried to increase…

New csf v3.27

Changes: Modified csf -dr option to delete advanced filter IP matches as well as simple matches in csf.deny