Get the most out of your Centmin Mod LEMP stack
Become a Member

iptables DDOS

Discussion in 'System Administration' started by steph40, Mar 21, 2019.

  1. steph40

    steph40 Member

    84
    17
    8
    Jan 28, 2019
    Ratings:
    +34
    Local Time:
    10:54 PM
    1.1.5
    mariadb 10
  2. eva2000

    eva2000 Administrator Staff Member

    59,284
    12,509
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,141
    Local Time:
    12:54 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    Unfortunately can't say with 100% certainty it would be when Centmin Mod uses CSF Firewall. Centmin Mod's CSF Firewall is just a wrapper to iptables so you can still use iptables rules if you know how CSF Firewall works by placing iptables rules in custom setup /etc/csf/csfpre.sh script with executable permissions which runs those iptables rules before CSF Firewall loads it's rules.

    Best to try a on test Centmin Mod VPS install and see how you go. But it would have to be non-openvz based i.e. KVM/Xen or bare bones dedicated as the articles required kernel/TCP settings won't work with openvz vps as you won't have permissions under openvz vpses to make such changes.

    Also you'd have to be fully be aware what those changes outlined in the article do and also how to revert/undo those changes if you run into problems. If you did place custom iptables rules in custom setup /etc/csf/csfpre.sh, then removing them is as easy as removing the iptable rules from custom setup /etc/csf/csfpre.sh and restarting CSF Firewall via command
    Code (Text):
    csf -ra
     
    Last edited: Mar 21, 2019
  3. steph40

    steph40 Member

    84
    17
    8
    Jan 28, 2019
    Ratings:
    +34
    Local Time:
    10:54 PM
    1.1.5
    mariadb 10
    Thank you
     
  4. eva2000

    eva2000 Administrator Staff Member

    59,284
    12,509
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,141
    Local Time:
    12:54 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    Also running command below lists all CSF Firewall's existing iptable rules so you can judge if any are already present
    Code (Text):
    csf -l
     
  5. eva2000

    eva2000 Administrator Staff Member

    59,284
    12,509
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,141
    Local Time:
    12:54 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+