<?xml version="1.0"?>
<rss version="2.0"><channel><title>Firewalls Latest Topics</title><link>https://designhost.gr/forum/49-firewalls/</link><description>Firewalls Latest Topics</description><language>en</language><item><title>Advanced Policy Firewall</title><link>https://designhost.gr/topic/809-advanced-policy-firewall/</link><description><![CDATA[
<p>
	Current Release:<br /><a href="http://www.rfxn.com/downloads/apf-current.tar.gz" rel="external nofollow">http://www.rfxn.com/downloads/apf-current.tar.gz</a><br /><a href="http://www.rfxn.com/appdocs/README.apf" rel="external nofollow">http://www.rfxn.com/appdocs/README.apf</a><br /><a href="http://www.rfxn.com/appdocs/CHANGELOG.apf" rel="external nofollow">http://www.rfxn.com/appdocs/CHANGELOG.apf</a>
</p>

<p>
	Description:<br />
	Advanced Policy Firewall (APF) is an iptables(netfilter) based firewall system designed around the essential needs of today’s Internet deployed servers and the unique needs of custom deployed Linux installations. The configuration of APF is designed to be very informative and present the user with an easy to follow process, from top to bottom of the configuration file.
</p>

<p>
	The technical side of APF is such that it utilizes the latest stable features from the iptables (netfilter) project to provide a very robust and powerful firewall. The filtering performed by APF is three fold:<br />
	1) Static rule based policies (not to be confused with a “static firewall”)<br />
	2) Connection based stateful policies<br />
	3) Sanity based policies
</p>

<p>
	The first, static rule based policies, is the most traditional method of firewalling. This is when the firewall has an unchanging set of instructions (rules) on how traffic should be handled in certain conditions. An example of a static rule based policy would be when you allow/deny an address access to the server with the trust system or open a new port with conf.apf. So the short of it is rules that infrequently or never change while the firewall is running.
</p>

<p>
	The second, connection based stateful policies, is a means to distinguish legitimate packets for different types of connections. Only packets matching a known connection will be allowed by the firewall; others will be rejected. An example of this would be FTP data transfers, in an older era of firewalling you would have to define a complex set of static policies to allow FTA data transfers to flow without a problem. That is not so with stateful policies, the firewall can see that an address has established a connection to port 21 then “relate” that address to the data transfer portion of the connection and dynamically alter the firewall to allow the traffic.
</p>

<p>
	The third, sanity based policies, is the ability of the firewall to match various traffic patterns to known attack methods or scrutinize traffic to conform to Internet standards. An example of this would be when a would-be attacker attempts to forge the source IP address of data they are sending to you, APF can simply discard this traffic or optionally log it then discard it. To the same extent another example would be when a broken router on the Internet begins to relay malformed packets to you, APF can simply discard them or in other situations reply to the router and have it stop sending you new packets (TCP Reset).
</p>

<p>
	Features:<br />
	– detailed and well commented configuration file<br />
	– granular inbound and outbound network filtering<br />
	– user id based outbound network filtering<br />
	– application based network filtering<br />
	– trust based rule files with an optional advanced syntax<br />
	– global trust system where rules can be downloaded from a central management server<br />
	– reactive address blocking (RAB), next generation in-line intrusion prevention<br />
	– debug mode provided for testing new features and configuration setups<br />
	– fast load feature that allows for 1000+ rules to load in under 1 second<br />
	– inbound and outbound network interfaces can be independently configured<br />
	– global tcp/udp port &amp; icmp filtering with multiple filters (drop, reject, prohibit)<br />
	– configurable policies for each ip on the system with convenience variables to import settings<br />
	– packet flow rate limiting that prevents abuse on the most widely abused protocol, icmp<br />
	– prerouting and postrouting rules for optimal network performance<br />
	– dshield.org block list support to ban networks exhibiting suspicious activity<br />
	– spamhaus Don’t Route Or Peer List support to ban known “hijacked zombie” IP blocks<br />
	– any number of additional interfaces may be configured as trusted or untrusted<br />
	– additional firewalled interfaces can have there own unique firewall policies applied<br />
	– intelligent route verification to prevent embarrassing configuration errors<br />
	– advanced packet sanity checks to make sure traffic coming and going meets the strictest of standards<br />
	– filter attacks such as fragmented UDP, port zero floods, stuffed routing, arp poisoning and more<br />
	– configurable type of service options to dictate the priority of different types of network traffic<br />
	– intelligent default settings to meet every day server setups<br />
	– dynamic configuration of your servers local DNS revolvers into the firewall<br />
	– optional filtering of common p2p applications<br />
	– optional filtering of private &amp; reserved IP address space<br />
	– optional implicit blocks of the ident service<br />
	– configurable connection tracking settings to scale the firewall to the size of your network<br />
	– configurable kernel hooks (ties) to harden the system further to syn-flood attacks &amp; routing abuses<br />
	– advanced network control such as explicit congestion notification and overflow control<br />
	– helper chains for FTP DATA and SSH connections to prevent client side issues<br />
	– optional rate limited event logging<br />
	– logging subsystem that allows for logging data to user space programs or standard syslog files<br />
	– comprehensive logging of every rule added<br />
	– detailed startup error checking<br />
	– if you are familiar with netfilter you can create your own rules in any of the policy files<br />
	– pluggable and ready advanced use of QoS algorithms provided by the Linux<br />
	– 3rd party add-on projects that compliment APF features
</p>

<p>
	Funding:<br />
	Funding for the continued development and research into this and other projects is solely dependent on public contributions and donations. If this is your first time using this software we ask that you evaluate it and consider a small donation; for those who frequent and are continued users of this and other projects we also ask that you make an occasional donation to help ensure the future of our public projects.
</p>

<p>
	<a href="https://www.rfxn.com/projects/advanced-policy-firewall/" rel="external nofollow">https://www.rfxn.com/projects/advanced-policy-firewall/</a>
</p>
]]></description><guid isPermaLink="false">809</guid><pubDate>Wed, 08 Feb 2017 06:42:40 +0000</pubDate></item><item><title>Cisco ASA firewall</title><link>https://designhost.gr/topic/217-cisco-asa-firewall/</link><description><![CDATA[
<div style="text-align:center;">
	<a href="https://www.globo.tech/learning-center/linux-firewall-introduction/" rel="external nofollow"><img alt="Αποτέλεσμα εικόνας για Firewall Cisco ASA" height="200" src="https://www.globo.tech/learning-center/wp-content/uploads/2014/03/Cisco-ASA-series-firewall-solution.jpg" style="margin-top:109px;" width="400" /></a>
</div>

<p style="text-align:center;">
	 
</p>

<p style="text-align:center;">
	<br />
	 
</p>

<div>
	<h3 style="text-align:center;">
		Overview:
	</h3>

	<p style="text-align:center;">
		 
	</p>

	<p style="text-align:center;">
		Protect yourself from intrusion attempts with Cisco ASA firewalls.
	</p>

	<p style="text-align:center;">
		Simple and quick to manage, you configure your filtering rules directly from a graphical interface in https:// client access through Java.
	</p>

	<p style="text-align:center;">
		Note: It is not possible to migrate a firewall from a dedicated server to a Virtual Rack. You will have to terminate your equipment and pay the setup fee for a new firewall.
	</p>

	<p style="text-align:center;">
		 
	</p>

	<div style="text-align:center;">
		<img alt="cutterlight600.jpg" src="https://www.ovh.com/us/images/bars/general/cutterlight600.jpg" /></div>

	<p style="text-align:center;">
		 
	</p>

	<h3 style="text-align:center;">
		Firewall uses:
	</h3>

	<p style="text-align:center;">
		 
	</p>

	<p style="text-align:center;">
		The Cisco ASA firewall ensures maximum protection, thanks to its many features:
	</p>

	<p style="text-align:center;">
		 
	</p>

	<ul><li style="font-size:14px;line-height:18px;text-align:center;">
			<span>Application Inspection:</span> control application, support of voice and video protocols
		</li>
		<li style="font-size:14px;line-height:18px;text-align:center;">
			<span>Intrusion Prevention:</span> real-time protection against attacks from DOS applications, detection and filtering of worms and viruses in network activity, detection of spyware, adware and malware
		</li>
		<li style="font-size:14px;line-height:18px;text-align:center;">
			<span>Securing IPCom:</span> Advanced inspection of voice protocols, specific IP signatures
		</li>
		<li style="font-size:14px;line-height:18px;text-align:center;">
			<span>Manage up to 450 Mbps of traffic (via ASA5520)</span>
		</li>
		<li style="font-size:14px;line-height:18px;text-align:center;">
			<span>Enable or disable your firewall,</span> directly from your Manager.
		</li>
		<li style="font-size:14px;line-height:18px;text-align:center;">
			Transparent mode only ("routed" mode not available)
		</li>
	</ul><p style="text-align:center;">
		 
	</p>

	<div style="text-align:center;">
		<img alt="cutterlight600.jpg" src="https://www.ovh.com/us/images/bars/general/cutterlight600.jpg" /></div>

	<p style="text-align:center;">
		 
	</p>

	<h3 style="text-align:center;">
		Operating principle
	</h3>

	<p style="text-align:center;">
		 
	</p>

	<h4 style="text-align:center;">
		Connection
	</h4>

	<p style="text-align:center;">
		Your firewall is directly connected between your server and the OVH.com router.
	</p>

	<div style="text-align:center;">
		<img alt="Operating principle" src="https://www.ovh.com/us/images/options/firewall.jpg" /></div>

	<p style="text-align:center;">
		 
	</p>

	<h4 style="text-align:center;">
		Administration interface
	</h4>

	<p style="text-align:center;">
		The Cisco firewall is delivered with an administration console. You will find some screenshots of the interface below:<br /><br /><a href="https://www.ovh.com/us/images/firewall/cisco_device_dashboard_big.jpg" rel="external nofollow" style="margin-left:290px;" title="Device Dashboard"><img alt="cisco_device_dashboard.jpg" src="https://www.ovh.com/us/images/firewall/cisco_device_dashboard.jpg" title="Device Dashboard" /></a><a href="https://www.ovh.com/us/images/firewall/cisco_firewall_db_big.jpg" rel="external nofollow" title="Firewall Dashboard"><img alt="cisco_firewall_db.jpg" src="https://www.ovh.com/us/images/firewall/cisco_firewall_db.jpg" title="Firewall Dashboard" /></a><a href="https://www.ovh.com/us/images/firewall/cisco_packet_tracer_big.jpg" rel="external nofollow" title="Packet Tracer"><img alt="cisco_packet_tracer.jpg" src="https://www.ovh.com/us/images/firewall/cisco_packet_tracer.jpg" title="Packet Tracer" /></a><a href="https://www.ovh.com/us/images/firewall/cisco_rt_syslog_viewer_big.jpg" rel="external nofollow" title="Syslog Viewer"><img alt="cisco_rt_syslog_viewer.jpg" src="https://www.ovh.com/us/images/firewall/cisco_rt_syslog_viewer.jpg" title="Syslog Viewer" /></a>
	</p>

	<p style="text-align:center;">
		 
	</p>

	<div style="text-align:center;">
		<img alt="cutterlight600.jpg" src="https://www.ovh.com/us/images/bars/general/cutterlight600.jpg" /></div>

	<p style="text-align:center;">
		 
	</p>

	<h3 style="text-align:center;">
		Advantages:
	</h3>

	<p style="text-align:center;">
		 
	</p>

	<p style="text-align:center;">
		With the Cisco ASA firewall, you get a physical firewall dedicated to the protection of your server.<br /><br />
		We deploy and activate this equipment for you. More powerful than a software firewall, the Cisco ASA cannot be disabled by human error or malware.<br />
		In addition, protection remains active regardless of the level of resources available on your dedicated server.
	</p>

	<p style="text-align:center;">
		<br /><br />
		 
	</p>

	<div style="text-align:center;">
		<img alt="cutterlight600.jpg" src="https://www.ovh.com/us/images/bars/general/cutterlight600.jpg" /></div>

	<p style="text-align:center;">
		 
	</p>

	<h3 style="text-align:center;">
		Order a Cisco ASA firewall:
	</h3>

	<p style="text-align:center;">
		 
	</p>

	<p style="text-align:center;">
		"Professional use" option must be activated on your server to be able to benefit from this product. (You can only have an USA ARIN IP with a /32 block)
	</p>

	<p style="text-align:center;">
		 
	</p>

	<table cellpadding="2" cellspacing="1" style="width:100%;"><tbody><tr><th style="width:236px;text-align:center;">
					Model
				</th>
				<th style="width:236px;text-align:center;">
					Cisco ASA 5505
				</th>
				<th style="width:236px;text-align:center;">
					Cisco ASA 5510
				</th>
				<th style="width:236px;text-align:center;">
					Cisco ASA 5520
				</th>
			</tr><tr><th style="width:236px;text-align:center;">
					Maximum Firewall Traffic (Mbps)
				</th>
				<td style="width:236px;text-align:center;">
					Up to 100 Mbps
				</td>
				<td style="width:236px;text-align:center;">
					Up to 100 Mbps
				</td>
				<td style="width:236px;text-align:center;">
					Up to 450 Mbps
				</td>
			</tr><tr><th style="width:236px;text-align:center;">
					Maximum Connections
				</th>
				<td style="width:236px;text-align:center;">
					10,000
				</td>
				<td style="width:236px;text-align:center;">
					50,000
				</td>
				<td style="width:236px;text-align:center;">
					280,000
				</td>
			</tr><tr><th style="width:236px;text-align:center;">
					Maximum New Connections/second
				</th>
				<td style="width:236px;text-align:center;">
					4000
				</td>
				<td style="width:236px;text-align:center;">
					9000
				</td>
				<td style="width:236px;text-align:center;">
					12,000
				</td>
			</tr><tr><th style="width:236px;text-align:center;">
					Maximum Nodes (VMs)
				</th>
				<td style="width:236px;text-align:center;">
					10
				</td>
				<td style="width:236px;text-align:center;">
					unlimited
				</td>
				<td style="width:236px;text-align:center;">
					unlimited
				</td>
			</tr><tr><th style="width:236px;text-align:center;">
					Technical Documentation
				</th>
				<td colspan="3" style="width:75%;text-align:center;">
					<a href="http://www.cisco.com/c/en/us/products/security/asa-5500-series-next-generation-firewalls/index.html?referring_site=bodynav" rel="external nofollow" style="text-align:center;" title="Find out more about the Cisco ASAs">More info</a>
				</td>
			</tr><tr><th style="width:236px;text-align:center;">
					Setup fee
				</th>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>29</span>.00</span>
				</td>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>649</span>.00</span>
				</td>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>1 290</span>.00</span>
				</td>
			</tr><tr><th rowspan="2" style="width:236px;text-align:center;">
					Price
				</th>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>25</span>.00</span><span>/month</span>
				</td>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>165</span>.00</span><span>/month</span>
				</td>
				<td style="width:236px;text-align:center;">
					<span>$</span><span><span>325</span>.00</span><span>/month</span>
				</td>
			</tr><tr><td style="width:236px;text-align:center;">
					<a href="https://us.ovh.com/manager/" rel="external nofollow" title="Order the Cisco ASA 5505"><span style="line-height:30px;">Order</span></a>
				</td>
				<td style="width:236px;text-align:center;">
					<a href="https://us.ovh.com/manager/" rel="external nofollow" title="Order the Cisco ASA 5510"><span style="line-height:30px;">Order</span></a>
				</td>
				<td style="width:236px;text-align:center;">
					<a href="https://us.ovh.com/manager/" rel="external nofollow" title="Order the Cisco ASA 5520"><span style="line-height:30px;">Order</span></a>
				</td>
			</tr></tbody></table><p style="text-align:center;">
		<br /><br />
		 
	</p>

	<p style="text-align:center;">
		Additional costs may be incurred by the customer if they ask for the ASA Firewall to be reset.
	</p>
</div>
]]></description><guid isPermaLink="false">217</guid><pubDate>Wed, 19 Oct 2016 20:25:06 +0000</pubDate></item><item><title>Next-Generation Firewalls</title><link>https://designhost.gr/topic/216-next-generation-firewalls/</link><description><![CDATA[
<div style="text-align:center;">
	<a href="http://www.pcconnection.com/brand/watchguard/next-gen-firewall" rel="external nofollow"><img alt="Αποτέλεσμα εικόνας για next-generation firewall" height="216" src="http://www.pcconnection.com/brand/watchguard/~/media/images/brands/w/watchguard/nextgenfirewall_hero.ashx?v=1&amp;la=en" style="margin-top:101px;" width="600" /></a>
</div>

<p style="text-align:center;">
	 
</p>

<p style="text-align:center;">
	 
</p>

<div>
	<h2 style="text-align:center;">
		Advanced defenses for advanced attacks
	</h2>
</div>

<div>
	<p style="text-align:center;">
		Block more threats and quickly mitigate those that do breach your defenses with the industry’s first threat-focused NGFW. Our Cisco Firepower NGFW appliances combine our proven network firewall with the industry’s most effective next-gen IPS and advanced malware protection. All so you can get more visibility, be more flexible, save more, and protect better.
	</p>
</div>

<p style="text-align:center;">
	 
</p>

<div>
	<div style="text-align:center;">
		 
	</div>

	<div>
		<h4 style="text-align:center;">
			<a href="http://www.cisco.com/c/en/us/products/security/asa-firepower-services/index.html" rel="external nofollow">ASA 5500-X with FirePOWER Services</a>
		</h4>

		<p style="text-align:center;">
			Small business, branch office, enterprise<br />
			Firewall throughput from 256 Mbps to 15 Gbps<br />
			Threat inspection from 125 Mbps to 30 Gbps<br />
			Stateful firewall, AVC, NGIPS, AMP, URL
		</p>
	</div>
</div>

<p style="text-align:center;">
	 
</p>

<div>
	<div style="text-align:center;">
		 
	</div>

	<div>
		<h4 style="text-align:center;">
			<a href="http://www.cisco.com/c/en/us/products/security/firepower-4100-series/index.html" rel="external nofollow">Firepower 4100 Series</a>
		</h4>

		<p style="text-align:center;">
			Internet edge, high-performance environments<br />
			Firewall throughput from 20 Gbps to 60 Gbps<br />
			Threat inspection from 10 Gbps to 20 Gbps<br />
			Stateful firewall, AVC, NGIPS, AMP, URL
		</p>
	</div>
</div>

<p style="text-align:center;">
	 
</p>

<div>
	<div style="text-align:center;">
		 
	</div>

	<div>
		<h4 style="text-align:center;">
			<a href="http://www.cisco.com/c/en/us/products/security/firepower-9000-series/index.html" rel="external nofollow">Firepower 9000 Series</a>
		</h4>

		<p style="text-align:center;">
			Service provider, data center<br />
			Firewall throughput up to 225 Gbps<br />
			Threat inspection up to 90 Gbps<br />
			Firewall, AVC, NGIPS, AMP, URL, DDoS
		</p>
	</div>
</div>
]]></description><guid isPermaLink="false">216</guid><pubDate>Wed, 19 Oct 2016 20:15:21 +0000</pubDate></item><item><title>csf 9.24</title><link>https://designhost.gr/topic/208-csf-924/</link><description><![CDATA[
<p>
	csf 9.24
</p>

<p>
	 
</p>

<p>
	<img alt="5mzuqx.png" class="ipsImage" src="http://i65.tinypic.com/5mzuqx.png" /></p>

<p>
	 
</p>

<p>
	 
</p>

<h3 style="font-family:Raleway, Arial, Helvetica, sans-serif;font-weight:500;line-height:1.1;color:rgb(153,0,0);margin-top:20px;margin-bottom:10px;font-size:24px;font-style:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	This suite of scripts provides:
</h3>

<ul style="margin:0px;list-style-type:none;padding:0px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;"><li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Straight-forward SPI iptables firewall script
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Daemon process that checks for login authentication failures for:
		<ul style="margin:0px;list-style-type:none;padding:0px;"><li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Courier imap, Dovecot, uw-imap, Kerio
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				openSSH
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				cPanel, WHM, Webmail (cPanel servers only)
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Pure-ftpd, vsftpd, Proftpd
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Password protected web pages (htpasswd)
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Mod_security failures (v1 and v2)
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Suhosin failures
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Exim SMTP AUTH
			</li>
			<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
				Custom login failures with separate log file and regular expression matching
			</li>
		</ul></li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		POP3/IMAP login tracking to enforce logins per hour
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		SSH login notification
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		SU login notification
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Excessive connection blocking
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		UI Integration for<span> </span><b style="font-weight:700;">cPanel</b>,<span> </span><b style="font-weight:700;">DirectAdmin</b><span> </span>and<span> </span><b style="font-weight:700;">Webmin</b>
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Easy upgrade between versions from within cPanel/WHM, DirectAdmin or Webmin
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Easy upgrade between versions from shell
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Pre-configured to work on a cPanel server with all the standard cPanel ports open
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Pre-configured to work on a DirectAdmin server with all the standard DirectAdmin ports open
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Auto-configures the SSH port if it's non-standard on installation
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Block traffic on unused server IP addresses - helps reduce the risk to your server
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Alert when end-user scripts sending excessive emails per hour - for identifying spamming scripts
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Suspicious process reporting - reports potential exploits running on the server
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Excessive user processes reporting
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Excessive user process usage reporting and optional termination
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Suspicious file reporting - reports potential exploit files in /tmp and similar directories
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Directory and file watching - reports if a watched directory or a file changes
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Block traffic on a variety of Block Lists including<span> </span><a href="http://feeds.dshield.org/block.txt" rel="external nofollow" style="background-color:transparent;color:rgb(51,122,183);text-decoration:none;">DShield Block List</a><span> </span>and<span> </span><a href="http://www.spamhaus.org/drop/index.lasso" rel="external nofollow" style="background-color:transparent;color:rgb(51,122,183);text-decoration:none;">Spamhaus DROP List</a>
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		BOGON packet protection
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Pre-configured settings for Low, Medium or High firewall security (cPanel servers only)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Works with multiple ethernet devices
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Server Security Check - Performs a basic security and settings check on the server (via cPanel/DirectAdmin/Webmin UI)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Allow Dynamic DNS IP addresses - always allow your IP address even if it changes whenever you connect to the internet
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Alert sent if server load average remains high for a specified length of time
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		mod_security log reporting (if installed)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Email relay tracking - tracks all email sent through the server and issues alerts for excessive usage (cPanel servers only)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		IDS (Intrusion Detection System) - the last line of detection alerts you to changes to system and application binaries
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		SYN Flood protection
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Ping of death protection
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Port Scan tracking and blocking
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Permanent<span> </span><em>and</em><span> </span>Temporary (with TTL) IP blocking
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Exploit checks
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Account modification tracking - sends alerts if an account entry is modified, e.g. if the password is changed or the login shell
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Shared syslog aware
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Messenger Service - Allows you to redirect connection requests from blocked IP addresses to preconfigured text and html pages to inform the visitor that they have been blocked in the firewall. This can be particularly useful for those with a large user base and help process support requests more efficiently
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Country Code blocking - Allows you to deny or allow access by ISO Country Code
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Port Flooding Detection - Per IP, per Port connection flooding detection and mitigation to help block DOS attacks
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		DirectAdmin UI integration
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Updated Webmin UI integration
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		WHM root access notification (cPanel servers only)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		lfd Clustering - allows IP address blocks to be automatically propagated around a group of servers running lfd. It allows allows cluster-wide allows, removals and configuration changes
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Quick start csf - deferred startup by lfd for servers with large block and/or allow lists
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Distributed Login Failure Attack detection
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Temporary IP allows (with TTL)
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		<b style="font-weight:700;">IPv6</b><span> </span>Support with ip6tables
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Integrated UI - no need for a separate Control Panel or Apache to use the csf configuration
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		Integrated support for cse within the Integrated UI
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		cPanel Reseller access to per reseller configurable options Unblock, Deny, Allow and Search IP address blocks
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		System Statistics - Basic graphs showing the performance of the server, e.g. Load Averages, CPU Usage, Memory Usage, etc
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		<a href="http://ipset.netfilter.org/" rel="external nofollow" style="background-color:transparent;color:rgb(51,122,183);text-decoration:none;">ipset</a><span> </span>support for large IP lists
	</li>
	<li style="background-image:url(&quot;images/shield.png&quot;);background-repeat:no-repeat;background-position:0px -2px;padding-left:26px;margin:4px;">
		...lots more!
	</li>
</ul><p style="margin:0px 0px 10px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	The reason we have developed this suite is that we have found over the years of providing server services that many of the tools available for the task are either over-complex, not user friendly, or simply aren't as effective as they could be.
</p>

<h3 style="font-family:Raleway, Arial, Helvetica, sans-serif;font-weight:500;line-height:1.1;color:rgb(153,0,0);margin-top:20px;margin-bottom:10px;font-size:24px;font-style:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	ConfigServer Firewall (csf)
</h3>

<p style="margin:0px 0px 10px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	We have developed an SPI iptables firewall that is comprehensive, straight-forward, easy and flexible to configure
</p>

<h3 style="font-family:Raleway, Arial, Helvetica, sans-serif;font-weight:500;line-height:1.1;color:rgb(153,0,0);margin-top:20px;margin-bottom:10px;font-size:24px;font-style:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	Login Failure Daemon (lfd)
</h3>

<p style="margin:0px 0px 10px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	To complement the ConfigServer Firewall (csf), we have developed a Login Failure Daemon (lfd) process that runs all the time and periodically (every X seconds) scans the latest log file entries for login attempts against your server that continually fail within a short period of time. Such attempts are often called "Brute-force attacks" and the daemon process responds very quickly to such patterns and blocks offending IP's quickly. Other similar products run every x minutes via cron and as such often miss break-in attempts until after they've finished, our daemon eliminates such long waits and makes it much more effective at performing its task.
</p>

<p style="margin:0px 0px 10px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	Login tracking is an extension of lfd, it keeps track of POP3 and IMAP logins and limits them to X connections per hour per account per IP address.
</p>

<h3 style="font-family:Raleway, Arial, Helvetica, sans-serif;font-weight:500;line-height:1.1;color:rgb(153,0,0);margin-top:20px;margin-bottom:10px;font-size:24px;font-style:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	Control Panel Configuration Interface
</h3>

<p style="margin:0px 0px 10px;color:rgb(51,51,51);font-family:Raleway, Arial, Helvetica, sans-serif;font-size:14px;font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;">
	To help with the ease and flexibility of the suite we have developed a front-end to both csf and lfd which is accessible by the root account through cPanel, DirectAdmin and Webmin. From there you can modify the configuration files and stop, start and restart the applications and check their status. This makes configuring and managing the firewall very simple indeed.
</p>

<p>
	 
</p>

<pre style="color:rgb(0,0,0);font-style:normal;font-weight:normal;letter-spacing:normal;text-indent:0px;text-transform:none;word-spacing:0px;white-space:pre-wrap;">
ChangeLog:

9.24   - UI html fixes

9.23   - Added upgrade note to the top of the UI if available

         UI improvements for integrated cse and interface to cxs

	 Added Scroll to Top/Bottom buttons

	 Consolidate images, css and javascript into a common directory in the
	 installer</pre>
]]></description><guid isPermaLink="false">208</guid><pubDate>Sun, 16 Oct 2016 18:01:41 +0000</pubDate></item></channel></rss>
