Added /etc, /sys and /proc to directories requiring –force to be used when scanning
Added additional checks that any specified quarantine directory is valid
Added new option –ctime [hours]. If you run regular full system scans then you can use –ctime [hours] to only scan files changed in the intervening hours. This can speed up scan times dramatically
Apply hfile:, hdir: and hsym: ignores to FTP upload scanning
Fixed UI issue with some settings sent via the Cluster Config option
Modified CONNLIMIT_LOGGING rule insertion point
Added new feature: Outgoing UDP Flood Protection. This option limits outbound UDP packet floods. These typically originate from exploit scripts uploaded through vulnerable web scripts. The feature is controlled by: UDPFLOOD, UDPFLOOD_LIMIT, UDPFLOOD_BURST, UDPFLOOD_LOGGING, UDPFLOOD_ALLOWUSER
Update the TOR URL in existing /etc/csf/csf.blocklists file if still set to the old URL
Security – added new option RESTRICT_UI. This options restricts the ability to modify settings within csf.conf from the csf UI. Should the parent control panel be compromised, these restricted options could be used to further compromise the server. This option is enabled by default on all installations
Added entries to csf.pignore on new installations on cPanel servers for Dovecot v2.2 (cPanel v11.40+)