Linux server1.hosting4iran.com 4.18.0-553.123.2.el8_10.x86_64 #1 SMP Thu May 7 15:28:41 EDT 2026 x86_64
LiteSpeed
Server IP : 185.208.174.156 & Your IP : 216.73.217.179
Domains : 326 Domain
User : satitravel
Terminal
Auto Root
Create File
Create Folder
Localroot Suggester
Backdoor Destroyer
Readme
/
usr /
src /
ConfigServer-Security-Firewall-CSF-main /
Delete
Unzip
Name
Size
Permission
Date
Action
ConfigServer
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
Crypt
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
HTTP
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
JSON
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
Module
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
Net
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
cpanel
[ DIR ]
drwxrwxr-x
2025-12-28 11:53
csf
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
cwp
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
cyberpanel
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
da
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
interworx
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
messenger
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
profiles
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
ui
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
version
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
vestacp
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
webmin
[ DIR ]
drwxrwxr-x
2022-02-28 12:44
.gitattributes
66
B
-rw-rw-r--
2022-02-28 12:44
README.md
6.05
KB
-rw-rw-r--
2022-02-28 12:44
accounttracking.txt
124
B
-rw-rw-r--
2022-02-28 12:44
alert.txt
181
B
-rw-rw-r--
2022-02-28 12:44
apache.http.txt
770
B
-rw-rw-r--
2022-02-28 12:44
apache.https.txt
1
KB
-rw-rw-r--
2022-02-28 12:44
apache.main.txt
0
B
-rw-rw-r--
2022-02-28 12:44
apf_stub.pl
976
B
-rwxrwxr-x
2022-02-28 12:44
auto.cwp.pl
15.01
KB
-rwxrwxr-x
2022-02-28 12:44
auto.cyberpanel.pl
14.56
KB
-rwxrwxr-x
2022-02-28 12:44
auto.directadmin.pl
15.41
KB
-rwxrwxr-x
2022-02-28 12:44
auto.generic.pl
14.56
KB
-rwxrwxr-x
2022-02-28 12:44
auto.interworx.pl
14.56
KB
-rwxrwxr-x
2022-02-28 12:44
auto.pl
31.76
KB
-rwx------
2025-12-28 11:53
auto.vesta.pl
15.07
KB
-rwxrwxr-x
2022-02-28 12:44
changelog.txt
219.96
KB
-rw-rw-r--
2022-02-28 12:44
connectiontracking.txt
192
B
-rw-rw-r--
2022-02-28 12:44
consolealert.txt
76
B
-rw-rw-r--
2022-02-28 12:44
cpanel.allow
3.76
KB
-rw-rw-r--
2022-02-28 12:44
cpanel.comodo.allow
1.84
KB
-rw-rw-r--
2022-02-28 12:44
cpanel.comodo.ignore
1.02
KB
-rw-rw-r--
2022-02-28 12:44
cpanel.ignore
958
B
-rw-rw-r--
2022-02-28 12:44
cpanelalert.txt
136
B
-rw-rw-r--
2022-02-28 12:44
csf.1.txt
7.7
KB
-rw-rw-r--
2022-02-28 12:44
csf.allow
891
B
-rw-rw-r--
2022-02-28 12:44
csf.blocklists
4.42
KB
-rw-rw-r--
2022-02-28 12:44
csf.c
1.53
KB
-rw-rw-r--
2022-02-28 12:44
csf.cloudflare
1.65
KB
-rw-rw-r--
2022-02-28 12:44
csf.conf
115.42
KB
-rw-rw-r--
2022-02-28 12:44
csf.cwp.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.cwp.conf
109.38
KB
-rw-rw-r--
2022-02-28 12:44
csf.cwp.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.cwp.pignore
2.99
KB
-rw-rw-r--
2022-02-28 12:44
csf.cyberpanel.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.cyberpanel.conf
109.13
KB
-rw-rw-r--
2022-02-28 12:44
csf.cyberpanel.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.cyberpanel.pignore
2.67
KB
-rw-rw-r--
2022-02-28 12:44
csf.deny
812
B
-rw-rw-r--
2022-02-28 12:44
csf.directadmin.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.directadmin.conf
111.6
KB
-rw-rw-r--
2022-02-28 12:44
csf.directadmin.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.directadmin.pignore
2.42
KB
-rw-rw-r--
2022-02-28 12:44
csf.dirwatch
636
B
-rw-rw-r--
2022-02-28 12:44
csf.div
12.44
KB
-rw-rw-r--
2022-02-28 12:44
csf.dyndns
939
B
-rw-rw-r--
2022-02-28 12:44
csf.fignore
972
B
-rw-rw-r--
2022-02-28 12:44
csf.generic.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.generic.conf
109.08
KB
-rw-rw-r--
2022-02-28 12:44
csf.generic.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.generic.pignore
1.96
KB
-rw-rw-r--
2022-02-28 12:44
csf.help
7.72
KB
-rw-rw-r--
2025-12-28 11:53
csf.ignore
577
B
-rw-rw-r--
2022-02-28 12:44
csf.interworx.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.interworx.conf
109.42
KB
-rw-rw-r--
2022-02-28 12:44
csf.interworx.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.interworx.pignore
2.54
KB
-rw-rw-r--
2022-02-28 12:44
csf.logfiles
856
B
-rw-rw-r--
2022-02-28 12:44
csf.logignore
3.96
KB
-rw-rw-r--
2022-02-28 12:44
csf.mignore
408
B
-rw-rw-r--
2022-02-28 12:44
csf.pignore
4.86
KB
-rw-rw-r--
2022-02-28 12:44
csf.pl
244.3
KB
-rwx------
2025-12-28 11:53
csf.rblconf
747
B
-rw-rw-r--
2022-02-28 12:44
csf.rbls
1.82
KB
-rw-rw-r--
2022-02-28 12:44
csf.redirect
1.12
KB
-rw-rw-r--
2022-02-28 12:44
csf.resellers
2.1
KB
-rw-rw-r--
2022-02-28 12:44
csf.rignore
1.58
KB
-rw-rw-r--
2022-02-28 12:44
csf.service
270
B
-rw-rw-r--
2022-02-28 12:44
csf.sh
1.89
KB
-rwxrwxr-x
2022-02-28 12:44
csf.signore
413
B
-rw-rw-r--
2022-02-28 12:44
csf.sips
510
B
-rw-rw-r--
2022-02-28 12:44
csf.smtpauth
660
B
-rw-rw-r--
2022-02-28 12:44
csf.suignore
368
B
-rw-rw-r--
2022-02-28 12:44
csf.syslogs
2.16
KB
-rw-rw-r--
2022-02-28 12:44
csf.syslogusers
1.33
KB
-rw-rw-r--
2022-02-28 12:44
csf.uidignore
457
B
-rw-rw-r--
2022-02-28 12:44
csf.vesta.allow
814
B
-rw-rw-r--
2022-02-28 12:44
csf.vesta.conf
109.29
KB
-rw-rw-r--
2022-02-28 12:44
csf.vesta.ignore
507
B
-rw-rw-r--
2022-02-28 12:44
csf.vesta.pignore
3.05
KB
-rw-rw-r--
2022-02-28 12:44
csfajaxtail.js
3.82
KB
-rw-rw-r--
2022-02-28 12:44
csfcron.sh
14
B
-rwxrwxr-x
2022-02-28 12:44
csftest.pl
5.87
KB
-rwxrwxr-x
2025-12-28 11:53
csget.pl
3.24
KB
-rwxrwxr-x
2022-02-28 12:44
downloadservers
53
B
-rw-rw-r--
2022-02-28 12:44
exploitalert.txt
129
B
-rw-rw-r--
2022-02-28 12:44
filealert.txt
151
B
-rw-rw-r--
2022-02-28 12:44
forkbombalert.txt
132
B
-rw-rw-r--
2022-02-28 12:44
install.cpanel.sh
18.94
KB
-rwxrwxr-x
2022-02-28 12:44
install.cwp.sh
17.06
KB
-rwxrwxr-x
2022-02-28 12:44
install.cyberpanel.sh
16.93
KB
-rwxrwxr-x
2022-02-28 12:44
install.directadmin.sh
16.39
KB
-rwxrwxr-x
2022-02-28 12:44
install.generic.sh
15.62
KB
-rwxrwxr-x
2022-02-28 12:44
install.interworx.sh
16.85
KB
-rwxrwxr-x
2022-02-28 12:44
install.sh
1.05
KB
-rwxrwxr-x
2022-02-28 12:44
install.txt
2.66
KB
-rw-rw-r--
2022-02-28 12:44
install.vesta.sh
15.97
KB
-rwxrwxr-x
2022-02-28 12:44
integrityalert.txt
374
B
-rw-rw-r--
2022-02-28 12:44
lfd.logrotate
172
B
-rw-rw-r--
2022-02-28 12:44
lfd.pl
381.87
KB
-rwx------
2025-12-28 11:53
lfd.service
215
B
-rw-rw-r--
2025-12-28 11:53
lfd.sh
2.13
KB
-rwxrwxr-x
2022-02-28 12:44
lfdcron.directadmin.sh
74
B
-rwxrwxr-x
2022-02-28 12:44
lfdcron.sh
74
B
-rwxrwxr-x
2022-02-28 12:44
license.txt
10.46
KB
-rw-rw-r--
2022-02-28 12:44
litespeed.http.txt
262
B
-rw-rw-r--
2022-02-28 12:44
litespeed.https.txt
1.17
KB
-rw-rw-r--
2022-02-28 12:44
litespeed.main.txt
0
B
-rw-rw-r--
2022-02-28 12:44
loadalert.txt
1.19
KB
-rw-rw-r--
2022-02-28 12:44
logalert.txt
103
B
-rw-rw-r--
2022-02-28 12:44
logfloodalert.txt
101
B
-rw-rw-r--
2022-02-28 12:44
migratedata.sh
8.35
KB
-rwxrwxr-x
2022-02-28 12:44
modsecipdbalert.txt
211
B
-rw-rw-r--
2022-02-28 12:44
netblock.txt
191
B
-rw-rw-r--
2022-02-28 12:44
os.pl
6.96
KB
-rwx------
2025-12-28 11:53
perf.sh
361
B
-rwxrwxr-x
2022-02-28 12:44
permblock.txt
209
B
-rw-rw-r--
2022-02-28 12:44
portknocking.txt
129
B
-rw-rw-r--
2022-02-28 12:44
portscan.txt
175
B
-rw-rw-r--
2022-02-28 12:44
processtracking.txt
391
B
-rw-rw-r--
2022-02-28 12:44
pt_deleted_action.pl
1.11
KB
-rwxrwxr-x
2025-12-28 11:53
queuealert.txt
97
B
-rw-rw-r--
2022-02-28 12:44
readme.txt
66.09
KB
-rw-rw-r--
2022-02-28 12:44
recaptcha.txt
143
B
-rw-rw-r--
2022-02-28 12:44
regex.custom.pm
2.14
KB
-rw-rw-r--
2025-12-28 11:53
regex.txt
13.25
KB
-rw-rw-r--
2022-02-28 12:44
relayalert.txt
196
B
-rw-rw-r--
2022-02-28 12:44
remove_apf_bfd.sh
397
B
-rwxrwxr-x
2022-02-28 12:44
resalert.txt
260
B
-rw-rw-r--
2022-02-28 12:44
reselleralert.txt
181
B
-rw-rw-r--
2022-02-28 12:44
restricted.txt
1.2
KB
-rw-rw-r--
2022-02-28 12:44
sanity.txt
4.93
KB
-rw-rw-r--
2022-02-28 12:44
scriptalert.txt
200
B
-rw-rw-r--
2022-02-28 12:44
sshalert.txt
176
B
-rw-rw-r--
2022-02-28 12:44
sualert.txt
161
B
-rw-rw-r--
2022-02-28 12:44
sudoalert.txt
161
B
-rw-rw-r--
2022-02-28 12:44
syslogalert.txt
194
B
-rw-rw-r--
2022-02-28 12:44
tracking.txt
298
B
-rw-rw-r--
2022-02-28 12:44
uialert.txt
129
B
-rw-rw-r--
2022-02-28 12:44
uidscan.txt
150
B
-rw-rw-r--
2022-02-28 12:44
uninstall.cwp.sh
1.73
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.cyberpanel.sh
1.94
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.directadmin.sh
1.64
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.generic.sh
1.52
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.interworx.sh
1.85
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.sh
2.21
KB
-rwxrwxr-x
2022-02-28 12:44
uninstall.vesta.sh
1.68
KB
-rwxrwxr-x
2022-02-28 12:44
upgrade.txt
720
B
-rw-rw-r--
2022-02-28 12:44
usertracking.txt
192
B
-rw-rw-r--
2022-02-28 12:44
version.txt
5
B
-rw-rw-r--
2022-02-28 12:44
watchalert.txt
129
B
-rw-rw-r--
2022-02-28 12:44
webminalert.txt
146
B
-rw-rw-r--
2022-02-28 12:44
x-arf.txt
1.2
KB
-rw-rw-r--
2022-02-28 12:44
Save
Rename
# ConfigServer Security & Firewall (CSF) If you look at IT-related job postings anywhere, you will notice a steady demand for security pros. This does not only mean that cybersecurity is an interesting field of study, but also a very lucrative one. With that in mind, in this article we will explain how to install and configure ConfigServer Security & Firewall (also known as CSF for short), a full-blown security suite for Linux, and share a couple of typical use cases. You will then be able to use CSF as a firewall and intrusion/login failure detection system to harden the servers you’re responsible for. Installing and Configuring CSF in Linux To begin, please note that Perl and libwww is a prerequisite to install CSF on any of the supported distributions (RHEL and CentOS, openSUSE, Debian, and Ubuntu). Since it should be available by default, there is no action required on your part unless one of the following steps returns a fatal error (in that case, use the package management system to install the missing dependencies). ~~~ # yum install perl-libwww-perl ~~~ ~~~ # apt install libwww-perl ~~~ Step 1 – Download CSF ~~~ # cd /usr/src # wget https://download.configserver.com/csf.tgz ~~~ or ~~~ # cd /usr/src # git clone https://github.com/anonymansz/csf ~~~ Step 2 – Extract the CSF tarball ~~~ # tar xzf csf.tgz # cd csf ~~~ Step 3 – Run the CSF Installation Script This part of the process will check that all dependencies are installed, create the necessary directory structures and files for the web interface, detect currently open ports, and remind you to restart the csf and lfd daemons after you’re done with the initial configuration. ~~~ # sh install.sh # perl /usr/local/csf/bin/csftest.pl ~~~ The expected output of the above command is as follows: ~~~ Testing ip_tables/iptable_filter...OK Testing ipt_LOG...OK Testing ipt_multiport/xt_multiport...OK Testing ipt_REJECT...OK Testing ipt_state/xt_state...OK Testing ipt_limit/xt_limit...OK Testing ipt_recent...OK Testing xt_connlimit...OK Testing ipt_owner/xt_owner...OK Testing iptable_nat/ipt_REDIRECT...OK Testing iptable_nat/ipt_DNAT...OK RESULT: csf should function on this server ~~~ ~~~ Step 4: Disable Firewall and Configure CSF Disable firewalld if running and configure CSF. # systemctl stop firewalld # systemctl disable firewalld Change TESTING = "1" to TESTING = "0" (otherwise, the lfd daemon will fail to start) and list allowed incoming and outgoing ports as a comma-separated list (TCP_IN and TCP_OUT, respectively) in /etc/csf/csf.conf as shown in the below output: # Testing flag - enables a CRON job that clears iptables incase of # configuration problems when you start csf. This should be enabled until you # are sure that the firewall works - i.e. incase you get locked out of your # server! Then do remember to set it to 0 and restart csf when you're sure # everything is OK. Stopping csf will remove the line from /etc/crontab # # lfd will not start while this is enabled TESTING = "0" # Allow incoming TCP ports TCP_IN = "20,21,22,25,53,80,110,143,443,465,587,993,995" # Allow outgoing TCP ports TCP_OUT = "20,21,22,25,53,80,110,113,443,587,993,995" Once you are happy with the configuration, save the changes and return to the command line. Step 5 – Restart and Test CSF # systemctl restart {csf,lfd} # systemctl enable {csf,lfd} # systemctl is-active {csf,lfd} # csf -v Test Config Security Firewall Test Config Security Firewall At this point we are ready to start setting up firewall and intrusion detection rules as discussed next. Setting up CSF and Intrusion Detection Rules First off, you will want to inspect the current firewall rules as follows: # csf -l You can also stop them or reload them with: # csf -f # csf -r respectively. Make sure to memorize these options – you will need them as you go along, particularly to check after making changes and restarting csf and lfd. Example 1 – Allowing and Forbidding IP Addresses To allow incoming connections from 192.168.0.10. # csf -a 192.168.0.10 Similarly, you can deny connections originating from 192.168.0.11. # csf -d 192.168.0.11 You can remove each of the above rules if you wish to do so. # csf -ar 192.168.0.10 # csf -dr 192.168.0.11 CSF Allow and Deny IP Address CSF Allow and Deny IP Address Note how the use of -ar or -dr above removes existing allow and deny rules associated with a given IP address. Example 2 – Limiting Incoming Connections by Source Depending on the intended use of your server, you may want to limit incoming connections to a safe number on a port basis. To do so, open /etc/csf/csf.conf and search for CONNLIMIT. You can specify multiple port; connections pairs separated by commas. For example, CONNLIMIT = "22;2,80;10" will only allow 2 and 10 incoming connections from the same source to TCP ports 22 and 80, respectively. Example 3 – Sending Alerts via Email There are several alert types that you can choose. Look for EMAIL_ALERT settings in /etc/csf/csf.conf and make sure they are set to "1" to receive the associated alert. For example, LF_SSH_EMAIL_ALERT = "1" LF_SU_EMAIL_ALERT = "1" will cause an alert to be sent to the address specified in LF_ALERT_TO each time someone successfully logs in via SSH or switches to another account using su command. CSF Configuration Options and Usage These following options are used to modify and control csf configuration. All the configuration files of csf are located under /etc/csf directory. If you modify any of the following files you will need to restart the csf daemon to take changes. csf.conf : The main configuration file for controlling CSF. csf.allow : The list of allowed IP’s and CIDR addresses on the firewall. csf.deny : The list of denied IP’s and CIDR addresses on the firewall. csf.ignore : The list of ignored IP’s and CIDR addresses on the firewall. csf.*ignore : The list of various ignore files of users, IP’s. Remove CSF Firewall If you would like to remove CSF firewall completely, just run the following script located under /etc/csf/uninstall.sh directory. # /etc/csf/uninstall.sh The above command will erase CSF firewall completely with all the files and folders.