Firewall Configuration troublese

supdude

Verified User
Joined
Jul 20, 2023
Messages
8
Hello,

I am having troubles finding a optimal configuration for my firewall settings. I have been using Config server & Firewall security while also using Immunify360. My main issue is that CSF seems to catch too many false positives. I repeatedly have users getting blacklisted while performing simple tasks inside Wordpress and other CMS systems. My first approach to this was to simply remove the modsecurity rules which seems to be the reason for the blacklist but after a while I found that people are still being blocked by rules that supposedly should be disabled within Modsecurity. I am using Commodo rules.

For now I have disabled CSF, and that seems to have helped a lot but this leaves the system exposed to malicious users. So I would love to get this solved. Any help on how to properly set this up so I do not get so many false-positives?

Thanks!
 
Personally, I don't recommend running both CSF and Imunify360 together - even though I'm aware there is an integration.

Imunify360 has its own WAF, its own firewall, etc. It might not have every single CSF feature, but I don't think you'll see a problem from a security standpoint.

For perspective, we run a lot of servers with just Imunify360 and honestly, websites getting hacked is extremely rare - Imunify360 does an excellent job of blocking malicious requests.

If you do still see security issues with Imunify360 enabled, I'd strongly suggest reaching out to report them. Their team is excellent.
 
Back
Top