Firewall alternatives

Posting in General Inquieries since NodeWorx Feature Requests is not open for posting new threads in.

I know that InterWorx uses APF… but personally, I’m not liking the interface. Maybe that’s just me.

But… why not allow others to use a firewall alternative? Something like ConfigServer’s Firewall script? I’ve always found it to be much more useful for me, personally. Especially since it also allows me to give resellers the ability to unblock IPs and the like right from their own billing system! That, and also it gives me a handy-dandy server security checklist. Well… a general one, but one that serves as a really nice reminder to ensure you take server security seriously.

I don’t see why we can’t use CSF seeing as CSF currently supports cPanel. Maybe you guys should talk to CSF about working on integrating it into your offerings?

Vote on: http://www.interworx.com/ideas/alternative-firewall-csf/ But I know the guys are thinking about CSF but you could ask CSF to see if they would do it.

Voted. Will get in touch with CSF… hopefully we’ll be able to do something about that.

Hi kerio and mike

The feature request forum is closed to new posts and you need to use ideas page interworx.com/ideas where it is voted on.

Personally I have no issues using APF, but then again no issues using CSF, and from what I’ve read, CSF does not have many more features which we have not implemented seperately, but allowing clients to delist or whitelist IP address I’m not too sure is a good idea myself, particularly if in shared enviroment.

If blocking is an issue, you could use kudoe script to unblock at time frames, which I think from memory, he set it to 1 hour

Many thanks

John

[QUOTE=d2d4j;27066]Hi kerio and mike

The feature request forum is closed to new posts and you need to use ideas page interworx.com/ideas where it is voted on.

Personally I have no issues using APF, but then again no issues using CSF, and from what I’ve read, CSF does not have many more features which we have not implemented seperately, but allowing clients to delist or whitelist IP address I’m not too sure is a good idea myself, particularly if in shared enviroment.

If blocking is an issue, you could use kudoe script to unblock at time frames, which I think from memory, he set it to 1 hour

Many thanks

John[/QUOTE]

I completely agree mate :slight_smile: I’ve coped fine with APF and BFD (Brute Force Detection) and I used to be a CSF person when I used a competitor, but the only thing CSF has which APF doesn’t is a Checker.

Hi mike

Is that an issue though

I suppose IW could run up a script to detail the same check perhaps, or a simple php script could work

As with everything though, I’m sure there’s areas where it does not detect threats, particularly on ipv6

Many thanks

John

[QUOTE=d2d4j;27072]Hi mike

Is that an issue though

I suppose IW could run up a script to detail the same check perhaps, or a simple php script could work

As with everything though, I’m sure there’s areas where it does not detect threats, particularly on ipv6

Many thanks

John[/QUOTE]

Nope no issue :wink: just some people prefer seeing what needs to be done to advance the security :p. I used to love CSF but I don’t any more lol it’s just the same.