Plesk 12.x / Linux :: Enable Firewall Rules Management
Jul 2, 2015
I just have installed plesk panel and when i get to the "Firewall" tool, then clicked on "Enable Firewall Rules Management", proftpd has stopped working properly.URLs....I have preinstalled the server 2 times, and every time i try to edit the firewall rules, proftpd got broken.
Applying Plesk firewall changes? I make my change, apply and get to:
Status: Applying in progress. If your browser shows connection error messages, or if this screen does not disappear in more than 30 seconds, go to previous page.
And there things stay. Going back to look at the firewall I can see the change haven't been applied, and going to apply just results in the same. No error, just no anything. It also took numerous attempts to get firewall modification to be swtich on although finally at about the eighth attempt changes were enabled. Only now I can't apply them ...
I am using the plesk firewall and trying to set up SSH rule which only allows from my IP but deny from everywhere else. In previous versions this worked fine by adding an ip selecting Allow from selected sources, deny from others and the icon in the rules would be orange with the lines
allow incoming from xxx.xxx.xxx.xx Deny incoming from all others
However this no longer works as the deny from all others is not appearing and is not being generated in the iptables by plesk.
I'll be life long grateful is some one can tell me how to allow only my IP address to access the whole vps server, to add ddos protection on it in the end.
I already try, but i'm a dummy already on linux interface.
i want removed all ip that are in firewall rules in csf/cpanel Chain SPAMHAUS (1 references) num pkts bytes target prot opt in out source destination 1 0 0 DROP all -- * * 91.146.64.0/18 0.0.0.0/0 2 0 0 DROP all -- * * 91.146.112.0/20 0.0.0.0/0 3 0 0 DROP all -- * * 89.35.0.0/23 0.0.0.0/0 4 0 0 DROP all -- * * 89.32.203.0/24 0.0.0.0/0 5 0 0 DROP all -- * * 89.233.64.0/18 0.0.0.0/0 6 0 0 DROP all -- * * 89.208.122.0/23 0.0.0.0/0 7 0 0 DROP all -- * * 89.187.192.0/19 0.0.0.0/0 8 0 0 DROP all -- * * 89.145.128.0/20 0.0.0.0/0 9 0 0 DROP all -- * * 88.206.80.0/20 0.0.0.0/0 10 0 0 DROP all -- * * 88.206.8.0/21 0.0.0.0/0 11 0 0 DROP all -- * * 88.206.64.0/20 0.0.0.0/0 12 0 0 DROP all -- * * 88.206.0.0/17 0.0.0.0/0 13 0 0 DROP all -- * * 88.206.0.0/21 0.0.0.0/0 14 0 0 DROP all -- * * 86.59.160.0/19 0.0.0.0/0 15 0 0 DROP all -- * * 86.59.128.0/17 0.0.0.0/0 16 0 0 DROP all -- * * 86.111.128.0/19 0.0.0.0/0 17 0 0 DROP all -- * * 86.105.230.0/24 0.0.0.0/0 18 539 37022 DROP all -- * * 85.255.112.0/20 0.0.0.0/0 19 0 0 DROP all -- * * 83.223.240.0/22 0.0.0.0/0 20 0 0 DROP all -- * * 83.223.224.0/19 0.0.0.0/0 21 0 0 DROP all -- * * 81.95.144.0/20 0.0.0.0/0 22 0 0 DROP all -- * * 81.29.240.0/20 0.0.0.0/0 23 0 0 DROP all -- * * 81.17.16.0/20 0.0.0.0/0 24 0 0 DROP all -- * * 78.95.128.0/20 0.0.0.0/0 25 0 0 DROP all -- * * 72.21.128.0/20 0.0.0.0/0 26 0 0 DROP all -- * * 69.8.176.0/20 0.0.0.0/0 27 393 27185 DROP all -- * * 69.50.160.0/19 0.0.0.0/0 28 0 0 DROP all -- * * 69.50.16.0/20 0.0.0.0/0 29 0 0 DROP all -- * * 66.55.160.0/19 0.0.0.0/0 30 0 0 DROP all -- * * 66.37.112.0/20 0.0.0.0/0 31 0 0 DROP all -- * * 66.185.112.0/20 0.0.0.0/0 32 0 0 DROP all -- * * 66.102.32.0/20 0.0.0.0/0 33 0 0 DROP all -- * * 65.255.32.0/20 0.0.0.0/0 34 0 0 DROP all -- * * 64.28.176.0/20 0.0.0.0/0 35 0 0 DROP all -- * * 64.255.128.0/19 0.0.0.0/0 36 0 0 DROP all -- * * 63.246.32.0/20 0.0.0.0/0 37 0 0 DROP all -- * * 58.83.0.0/22 0.0.0.0/0 38 0 0 DROP all -- * * 58.65.238.0/23 0.0.0.0/0 39 0 0 DROP all -- * * 58.65.232.0/21 0.0.0.0/0 40 0 0 DROP all -- * * 217.69.112.0/20 0.0.0.0/0
I have a Real Time Web Application Security Rules Subscription. I change the ModSecurity Rule Setup and add the Atomic LoginData to Plesk. All looks fine but the ModSecurity Log is now empty.
- Debian 7 with all Updates - Plesk Version 12.0.18 Update #49
Why isnt Plesk 12 configuring firewalld under CentOS 7 correctly? We have to manuella enable port 8443 and all other ports manually with firewall-cmd..
I am running Plesk 11.5.30 Update #44, Postfix 2.8.14 and Spamassassin 3.3.1 on a Red Hat Enterprise Linux Server 6.5 server. I am looking to update the rules within Spamassassin. I have had a bit of a look and see that a crontab has been created but its a bash script with a comment saying it has been disabled by psa-spamassassin package (/etc/cron.d/sa-update).
Code:
#!/bin/sh # This task was disabled by psa-spamassassin package exit 0
Is there a reason why it has been disabled by Plesk? If I update the rules, will it break something?
I have recently added into Postfix RBLs to reduce the amount of SPAM my customers is getting and this is my next step in a list of things that I would like to change.
Trying to restrict access to plesk control panel to one IP address (fake 66.67.68.69).
When I add the network 66.67.68.69/255.255.255.254 I recieve the following notification:
Error: The access restriction policy and the list of networks are currently configured the way you will not be able to log in with administrator's rights from your IP address '66.67.68.69'.
Now I would like this to be the ONLY ip address from wich i can log in.
We are successfully using fail2ban on our server (CentOS 6.6, Plesk 12.0.18), that is, jails running and blocking potential intruders
However, we tried to create a custom jail for the CMS that is being used by most of our clients.
I followed the instructions (Tools & Settings > IP Address Banning (Fail2Ban) > Jails > Manage Filters > Add Filter) and created the filter I wanted, but then it does not appear in the list, even though it displays a message reading that the filter was created successfully. Then, if I try to create a new Jail, the filter is not available from the list.
Looking at the directory /etc/fail2ban/filter.d/ I can find a file that has the same name as the filter I created, with a .local extension (the file name does not contain whitespaces or other special characters)...
I have installed the nginx on my server and want to activate it for all my domains, to do this, i have to do it manually for each domains. But there should be an easier way. Apache uses too much ram.
We have many hundreds of domains on our Plesk 11.5 server (Linux) but many of them do not have SSL support enabled. Any script that would enable it for all domains and subdomains on our server, to save the tedious time of manually checking every domain?
I'm using on virtual machine the last version of PLESK 11.5.3 update #42 and UBUNTU 12.04.4 LTS provide by a main Italian ISP, the MySQL version is 5.5.35-0ubuntu0.12.04.2.I'm trying to enable the local-infile option in the /etc/mysql/my.cnf file:
[client] local-infile = 1
[mysqld] local-infile = 1
When I'm restarting mysql service (with command "service mysql restart") the PHP script works correctly and "SHOW GLOBAL VARIABLES" results "ON", but when server reboot or some hours by the restart the PHP script return to not work correctly and appear the standard messagge: "The used command is not allowed with this MySQL version".Maybe the problem is the start of mysql on boot? I haven't any errors in the mysql or system log!!
I've tried to enable https on a domain /server: vpn, debian 6.0.10, plesk 12.0.18/ but all I receive is a 403 forbidden error. I can't find any other related option, what could be the problem?
I migrated many domains to a Plesk 12 with lot of email accounts. I need to find a way to mass enable antispam and DR.Web anti virus.
How can I enable to all accounts the antispam with certain parameters Ex. 5 Points and Mark **SPAM** _SCORE_ in the subject and also enable Dr.Web for incoming email.