Portal Home > Knowledgebase > Articles Database > Firewall Status: Enabled but Stopped
Firewall Status: Enabled but Stopped
Posted by aniga17, 03-16-2016, 11:53 AM |
After i installed CSF on my server i am getting this
Firewall Status: Enabled but Stopped
How i can resolve this issue?
I have already googled but i did not get solution
anyone knows the solution
Kind Regards
|
Posted by ServerSub, 03-16-2016, 12:07 PM |
did you change testing value to 0 then restarted csf?
|
Posted by aniga17, 03-16-2016, 12:25 PM |
Yes i have changed the value to 0.
After i click restart CSF i get this
Restarting csf...
Flushing chain `INPUT'
Flushing chain `FORWARD'
Flushing chain `OUTPUT'
csf: FASTSTART loading DROP no logging (IPv4)
LOG tcp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix `Firewall: *TCP_IN Blocked* '
LOG tcp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 tcp flags:0x17/0x02 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix `Firewall: *TCP_OUT Blocked* '
LOG udp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix `Firewall: *UDP_IN Blocked* '
LOG udp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix `Firewall: *UDP_OUT Blocked* '
LOG icmp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 0 level 4 prefix `Firewall: *ICMP_IN Blocked* '
LOG icmp opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0 limit: avg 30/min burst 5 LOG flags 8 level 4 prefix `Firewall: *ICMP_OUT Blocked* '
DROP all opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0
DROP all opt -- in * out * 0.0.0.0/0 -> 0.0.0.0/0
DENYOUT all opt -- in * out !lo 0.0.0.0/0 -> 0.0.0.0/0
DENYIN all opt -- in !lo out * 0.0.0.0/0 -> 0.0.0.0/0
ALLOWOUT all opt -- in * out !lo 0.0.0.0/0 -> 0.0.0.0/0
ALLOWIN all opt -- in !lo out * 0.0.0.0/0 -> 0.0.0.0/0
csf: FASTSTART loading Packet Filter (IPv4)
Error: FASTSTART: (Packet Filter IPv4) [] [iptables-restore: line 14 failed]. Try restarting csf with FASTSTART disabled, at line 4741
|
Posted by bear, 03-16-2016, 01:40 PM |
Try restarting csf with FASTSTART disabled"
Have you?
|
Posted by garconcn, 03-16-2016, 06:10 PM |
I had similar problem on cloudlinux 7, but it works fine on all my cloudlinux 6 servers.
|
Posted by aniga17, 03-17-2016, 10:04 AM |
Yes i have disabled the FASTSTART but it blocked, after that i have contact my host they whitelisted my IP address. so i am not sure to that again
|
Posted by Srv24x7, 03-17-2016, 11:18 AM |
Hi,
I would suggest you take a test of csf first and then check if it is supported properly. You will fine a csftest.pl file in the /etc/csf directory and you can execute it to carry on the test...
|
Posted by kevincheri, 03-18-2016, 02:39 AM |
looks like you're on VPS and the main node has to allow you on few modules, you'll need to run the CSF test script one and ask your host to enable them.
|
Posted by serversolutions24x7, 03-18-2016, 03:01 AM |
Can you please make sure that IPtables is running on your VPS and on which virtualization platform your VPS is ?
|
Posted by aniga17, 03-20-2016, 12:25 AM |
My host is godaddy they said "we can't installed the missing modules, CSF should work fine without those modules"
I have disabled CSF that is the best solution i have and their support sucks
|
Posted by bear, 03-20-2016, 08:06 AM |
Not using a firewall isn't a good solution. If you're not happy, why stay?
|
Posted by tech-for-you, 03-21-2016, 03:38 AM |
Hi,
I suppose you have downloaded the csf tar file to your server. Can you please run the below command after you have untared the csf file in the server.
++++
./csftest.pl
++++
This will confirm that whether the server allows csf to run in it. Please post the result of it.
|
Add to Favourites Print this Article
Also Read