Welcome to Centmin Mod Community
Register Now

Beta Branch update CSF Firewall routine in 130.00beta01

Discussion in 'Centmin Mod Github Commits' started by eva2000, Sep 7, 2022.

  1. eva2000

    eva2000 Administrator Staff Member

    59,427
    12,531
    113
    May 24, 2014
    Brisbane, Australia
    Ratings:
    +19,170
    Local Time:
    8:08 PM
    Nginx 1.31.x
    MariaDB 10.x/11.4+/12.3+
    update CSF Firewall routine in 130.00beta01

    - ensure tools/csfcf.sh checks if ipcalc YUM package is installed as it's needed to evalue the default Cloudflare allowed IP list. If ipcalc YUM package isn't installed, CSF Firewall won't add Cloudflare's IP addresses to CSF Firewall's allow list
    - for new installs only, add port 443 to UDP_OUT allowed list in /etc/csf/csf.conf config file to allow for outbound HTTP/3 connections over QUIC and UDP ports for clients on server which support HTTP/3 over QUIC/UDP. In future will need to add port 443 to UDP_IN allowed list too, but since no servers on Centmin Mod including Nginx support HTTP/3 over QUIC UDP, it isn't required right now

    Continue reading...


    130.00beta01 branch

    Support Centmin Mod


    If you find Centmin Mod useful, please help support Centmin Mod