I installed the ConfigServer Security & Firewall - csf v4.74 and carefully configged it all, but ever since I have it installed traffic to my server has gone up considerably, like with a constant 70-100 kbits/sec. It's as if this software secretly announced my server to the world of portscanners and the likes.
Also, csf does not use the iptables module connlimit, and it doesn't offer me a manual override over their iptables ruling, or I can't find it anyway.. I will ask in their forums.
I did not suffer from ssh login attempts, since I use Public key login, so the whole lfd stuff is overkill for my server i.m.o.
Still, if some experts would be so kind to check and improve on the firewall script I posted above, I'd be very thankful.
Last edited by meowing; 10-07-2009 at 02:56 PM.
|