Aar
Verified User
I'm going to install a server with DirectAdmin this week. And I wonder what the best combination is. I know you have CSF which works with iptables so you can manage the firewall through DirectAdmin. This one also has LFD (Login Failure Deamon) on board.
You also have Fail2Ban which is separate from DirectAdmin, but is easy to set up, and can also scan other log files for IP ranges that should be blocked when bruteforcing. (Nice for phpMyAdmin or the admin panel of your CMS). And also you have BFD in Directadmin that only monitors the calls on DA's port 2222. (However?)
Now I wondered:
What is the best combination?
Can you use CSF+LFD together with Fail2Ban?
Or can you use CSF (for the webinterface) without LFD, but with Fail2ban?
Of course I disable the use of the root login and I use SSH keys.
You also have Fail2Ban which is separate from DirectAdmin, but is easy to set up, and can also scan other log files for IP ranges that should be blocked when bruteforcing. (Nice for phpMyAdmin or the admin panel of your CMS). And also you have BFD in Directadmin that only monitors the calls on DA's port 2222. (However?)
Now I wondered:
What is the best combination?
Can you use CSF+LFD together with Fail2Ban?
Or can you use CSF (for the webinterface) without LFD, but with Fail2ban?
Of course I disable the use of the root login and I use SSH keys.