csf

New csf v9.12

Changes:

  • Improved LOGSCANNER accuracy of hourly and daily runs between restarts
  • Added more binaries on cPanel servers to csf.pignore for cPanel v60
  • Fixed repeated check for PHP open_basedir in Server Check
  • Do not perform suexec check if mod_ruid2 enabled in Server Check
  • Corrected text description of IPv6 port lists in non-cPanel csf.conf
  • Export ConfigServer::Logger::logfile
  • Detect mpm_itk_module and treat in a similar manner to ruid2_module in Server Check
  • Removed use of Cpanel::cPanelFunctions as it is now being withdrawn
  • Updated common ConfigServer UI
  • Fix instance where cluster block timeout for temporary blocks was not being sent
  • Check for EOL PHP v5.5 in Server Check
  • Added detection of alt-php versions provided by CloudLinux, but do not check them for EOL version status

New csf v9.11

Changes:

  • Fixed issue with csf.allow Include checks when allowing an IP
  • Added the Greensnow blocklist to csf.blocklists for new installs
  • Fixed display of ports in CLI temporary blocks
  • Fixed issue removing CIDR blocks via the CLI from csf.deny

New csf v9.10

Changes:

  • Fix profile diff in the CLI
  • Fixed issue with deny removal by IP address of advanced rules in the CLI

New csf v9.09

Changes:

  • Additional fix for ip6tables MESSENGER service when LF_IPSET not enabled (ip6tables nat)

New csf v9.08

Changes:

  • AUTOSHUN list removed from csf.blocklists as the public list is no longer available
  • Added support for ip6tables MESSENGER service when LF_IPSET not enabled (ip6tables nat)

New csf v9.07

Changes:

  • Fixed removal of complex allow and deny rules
  • Fixed IPv6 implementation of CC_ALLOW_PORTS_* and CC_DENY_PORTS_*
  • Fixed file upload in cse via the integrated UI
  • Fixed “csf –cfile [file]”
  • Removed setting: OLD_REAPER
  • Localised SIGNALs
  • Localised uid and gid change in MESSENGER
  • Removed Bareword file handles
  • Where ip6tables <= v1.3.5 and IPV6 is enabled, disable USE_CONNTRACK if enabled as ip6tables does not support the conntrack module in older versions. This will force the use of the state module instead

New csf v9.06

Changes:

  • Fixed incorrect inclusion of cPanel Free SSL service include entries on new non-cPanel installations

New csf v9.05

Changes:

  • Fixed RT_AUTHRELAY_LIMIT detection

New csf v9.04

Changes:

  • Fixed issue with custom regex rules where log hash was not being passed to regex.custom.pm
  • Fixed issue with custom regex rules where “use strict” was used incorrectly

New csf v9.03

Changes:

  • Fixed issue with LF_ALERT_TO and LF_ALERT_FROM not being used when set