Vesta Control Panel - Forum

Community Forum

Skip to content

Advanced search
  • Quick links
    • Main site
    • Github repo
    • Google Search
  • FAQ
  • Login
  • Register
  • Board index Main Section General Discussion Debian/Ubuntu
  • Search

which is the best protection? fail2ban or CSF

Debian/Ubuntu related topics
Post Reply
  • Print view
Advanced search
3 posts • Page 1 of 1
colifato
Posts: 6
Joined: Fri May 20, 2016 8:23 pm

Os: Ubuntu 15x
Web: apache + nginx
which is the best protection? fail2ban or CSF
  • Quote

Post by colifato » Tue May 09, 2017 2:02 pm

Hello all, i have the question..
What would be the best way to protect my server with VestaCP?
Using fail2ban or using CSF?

CSF can be uninstalled?
What would be the best CSF configuration?

Thanxs all
Top

ArisC
Posts: 29
Joined: Tue Apr 18, 2017 1:37 pm

Re: which is the best protection? fail2ban or CSF
  • Quote

Post by ArisC » Tue May 09, 2017 4:18 pm

colifato wrote:Hello all, i have the question..
What would be the best way to protect my server with VestaCP?
Using fail2ban or using CSF?

CSF can be uninstalled?
What would be the best CSF configuration?

Thanxs all

Two different purposes.

CSF is Firewall and fail2ban is a plain Intrusion Detection Service.

More Info: https://configserver.com/cp/csf.html
https://www.fail2ban.org/wiki/index.php/Main_Page
What would be the best CSF configuration?
You Can perform a basic security, stability and settings check on the server
Top

plutocrat
Posts: 232
Joined: Fri Jan 27, 2017 9:16 am

Os: Ubuntu 17x
Web: apache + nginx
Re: which is the best protection? fail2ban or CSF
  • Quote

Post by plutocrat » Sun Oct 29, 2017 5:18 am

CSF is actually a firewall which includes a brute force protection daemon, very similar to fail2ban. I think this is what prompted the original poster's question.

From the website:
Login Failure Daemon (lfd)
To complement the ConfigServer Firewall (csf), we have developed a Login Failure Daemon (lfd) process that runs all the time and periodically (every X seconds) scans the latest log file entries for login attempts against your server that continually fail within a short period of time. Such attempts are often called "Brute-force attacks" and the daemon process responds very quickly to such patterns and blocks offending IP's quickly. Other similar products run every x minutes via cron and as such often miss break-in attempts until after they've finished, our daemon eliminates such long waits and makes it much more effective at performing its task.
Top


Post Reply
  • Print view

3 posts • Page 1 of 1

Return to “Debian/Ubuntu”



  • Board index
  • All times are UTC
  • Delete all board cookies
  • The team
Powered by phpBB® Forum Software © phpBB Limited
*Original Author: Brad Veryard
*Updated to 3.2 by MannixMD
 

 

Login  •  Register

I forgot my password