ConfigServer shutting down as of 31st of August 2025

Will you consider releasing csf (Configserver Security & Firewall) under an open-source/GPL license?
Yes, we are seriously considering releasing csf (ConfigServer Security & Firewall) under the GPLv3 license.
has been changed to

Yes, we are working on releasing csf (ConfigServer Security & Firewall) under the GPLv3 license.

So that's great news 🥳 hopefully the DA team integrates this native
 
Well, I think it's hard when it's opensource to find a respectable maintainer. Who can make little money off it because it's opensource and current paying customers might not be so many. At least, if you have to end businesses within a month after announcing, it's not going very well. My 2 cents...

So, are 100.000 hosters putting their servers in the hands of 'Jack, 16 year, the new maintainer', who likes to hack around on linux? Yeah, I guess not...
 
Today I was playing around with crowdsec and it kinda looks promising as an replacement for the LFD part.
For the CSF part I'm looking at suricata. This handles the ids & ips.

Both look promising and relatively easy to setup. In my testlab I have crowdsec analyzing logfiles on it's own vm (not required) gathered from remote rsyslogs from other vm's and redistribute the bans to a number of vm so they can all block the ip's too.

This takes care of the packet inspection ids/ips, the log scanning and for a part the processmonitoring using e.g. audit.log files.

But I just played around with it for a few hours. I'd like to hear any any other thought, although this might better fit in it's own thread.
 
CSF has been a game changer

This is shocking news for me only randomly stumbing to this subform. Im guessing this will be the case for many many more people who dont even know this is coming. Since it works so well, hopefully a fork is made and CSF can live on...
 
Surely they could add a monthly subscription for their software and it would mean their business would be more than profitable? Or are there other things going on which (rightly) they don't need to disclose.

They are correct in their announcement when they say the software business has changed - it has moved into the subscription model and their software is still stuck in the pay once and upgrade free forever or in CSF case free forever. The ship has probably sailed but if they changed this and started charging a monthly or annual fee for upgrades this might assist in making the business profitable. 🤷🏼‍♀️
 
Is there anything wrong with the most simple solution of having CSF hosted by directadmin servers for the installation process?
 
May I gently re-ask: What is with this solution: Cockpit (GUI) + firewalld (which uses nftables), should be safe for Alma 10
Any tests?
 
May I gently re-ask: What is with this solution: Cockpit (GUI) + firewalld (which uses nftables), should be safe for Alma 10
Any tests?
Hi, its for SERVER management not relevant to csf/lfd . Its compatible for many Linux operating systems including Debian, Fedora and RHEL.
 
Back
Top