BFM, LFD, CSF, o my! How best to integrate?

abletec

Verified User
Joined
Sep 14, 2021
Messages
29
I'm trying to figure out how best to integrate DA, CSF, LFM, & LFD, as the subject sort of states. It seems like either BFM or LFD should be disabled, as the 2 strike me as redundant, but I'm not the sharpest tool in the shed so correct me if that's a stupid statement. I did read the Poralix Github page, but I'm currently using the abuseipdb blocklist, & it seems like that particular solution is advocating the use of a much smaller home-grown blocklist. I do have IP-Set installed & enabled. I'm also using Nginx, which neither CSF, LFD, DA, & BFM seem to cater to much.

So what do yall use to try to secure your servers? Thanks for any & all suggestions. Have a blessed rest of your weekend.
 
I don't know what LFM is, unless it's a file manager.

To secure the servers, we harden them a bit. Of course we use CSF/LFD and BFM from DA which works automatically.
Then clamav and maldetect to scan for malware on user homes.
Installed and enabled ipset in CSF, we got lots of memory anyway, and we're also using Abuseipdb with a perfect script for it, made by @eva2000 and can be found on Github (click).

Then there are mod-security options and Immunify which is used by some.
And probably some things.
 
I don't know what LFM is, unless it's a file manager.

To secure the servers, we harden them a bit. Of course we use CSF/LFD and BFM from DA which works automaticaelly.
Then clamav and maldetect to scan for malware on user homes.
Installed and enabled ipset in CSF, we got lots of memory anyway, and we're also using Abuseipdb with a perfect script for it, made by @eva2000 and can be found on Github (click).

Then there are mod-security options and Immunify which is used by some.
And probably some things.
Should've said BFM instead of LFM--apologies.
 
Standard function is here https://docs.directadmin.com/direct...-bfm.html#enabling-csf-for-an-existing-server
DirectAdmin integrated with CSF directly in Version 1.61.0 (prior versions utilized hook scripts for the integration). Make sure you are using this version before proceeding with these instructions, otherwise, you'll need to either upgrade or use a deprecated method of CSF-BFM integration.

Code:
/usr/local/directadmin/directadmin version


You might glean something here https://forum.directadmin.com/threads/abuseipdb-and-csf-others.61679/post-317020
 
Back
Top