Server Software and Configuration Services
New csf v7.11
Changes: DROP_PF_LOGGING disabled by default on new installs as enabling by default will just cause confusion
Changes: DROP_PF_LOGGING disabled by default on new installs as enabling by default will just cause confusion
Changes: Removed debugging code from Port Scan Tracking
Changes: Set scripts (.pl,.cgi,.php,.sh,.py) in /etc/csf/ to chmod 700 Simplified PACKET_FILTER rules for dropping INVALID connection tracking states. This feature now only applies a single rule for incoming INVALID packets DROP_PF_LOGGING enabled by default on new installs INVALID added as…
Changes: Modified cmc map to only show users and domains with actual exceptions
Changes: Added support for Concurrent logs stored in the cPanel directory: /usr/local/apache/logs/modsec_audit/ Added cmc user/domain configuration map
Changes: Modified lfd to silently drop ST_ENABLE lock queue entries unless DEBUG is enabled Modified ST_ENABLE logging to append to data file and only truncate when needed
Changes: Added locking to ST_ENABLE and ST_SYSTEM to prevent child process queues
Changes: Removed a false-postitive fingerprint definition Exploit fingerprint definitions database additions
Changes: Fix SMTPAUTH_RESTRICT where IPv6 addresses need to be quoted for exim
Changes: Ensure –ignore [file] is always loaded last Allow ignoring of Fingerprints New master bayes corpus generated Exploit regex definitions database additions Exploit fingerprint definitions database additions