Chirpy

Chirpy

New csf v8.08

Changes: Fixed csf.sips modification via UI on Redhat/CentOS v7.1 Raised csf.blocklist names from 9 to 25 characters long. This cannot be greater due to limits on ipset names on some OS’s and the use of prepended names for new ipset…

New cxs v6.00

Changes: Added new major feature for cxs Watch: –Wmonitor [file] This option allows you to monitor and report on changes to a list of resources in [file]. See cxs POD for more information Added option –Wmonignore [file] to use instead…

New csf v8.07

Changes: Ensure spaces are stripped from values in on cPanel servers Fixed issue with csf –add [ip] not always removing [ip] if present from csf.deny Modified the LF_QOS regex to cater for additional log formats

New cxs v5.32

Changes: Force email Date: field incase the MTA fails to add one Modified all report timestamps to use the same format Exploit fingerprint definitions database additions

New cmc v2.00

Changes: Added Easyapache v4 support Removed references to modsecparse.pl as it is no longer used by cPanel Fixed modify file list to only list actual files

New csf v8.06

Changes: Added port 24441 to UDP_OUT and UDP6_OUT for new installs on cPanel servers for Pyzor that was added by cPanel in v11.52 Support added for EasyApache4 log locations in cPanel from Added more executable files to csf.pignore on…

New csf v8.05

Changes: Added alarms to HOST binary calls Added new csf CLI option: –rbl [email]. This generates the report checking IP addresses against a set of RBLs. Optional configuration is available through Added UI to utilise the new –rbl [email]…

New cxs v5.31

Changes: Ensure only root can attempt to download the bayes corpus Fixed POD reference to –bforget Fixed POD formatting of long example commands Updated Software Version Checking Exploit regex definitions database additions Exploit fingerprint definitions database additions

csf PT_USERKILL Recommendation

We wanted to reiterate the points made in the csf configuration and during csf restart regarding the PT_USERKILL option and the problems it can cause on servers as there appears to have been a spate of people enabling the option,…