یکبار Iptables و csf را فلاش دهید و مجددا کانفیگ کنید.
bash دست نویس که بنده نوشته ام برای این مورد :
کد:
service iptables stop
csf -F
csf -x
iptables -F
service iptables save
service iptables restart
sh /etc/csf/uninstall.sh
rm -fv csf.tgz &> /dev/null
wget http://www.configserver.com/free/csf.tgz &> /dev/null
tar -xzf csf.tgz &> /dev/null
cd csf &> /dev/null
sh install.sh &> /dev/null
cd .. &> /dev/null
sed -i 's|TESTING = "1"|TESTING = "0"|g' /etc/csf/csf.conf
sed -i 's|ICMP_IN_RATE = "1/s"|ICMP_IN_RATE = "0"|g' /etc/csf/csf.conf
sed -i 's|DENY_IP_LIMIT = "200"|DENY_IP_LIMIT = "0"|g' /etc/csf/csf.conf
sed -i 's|SYNFLOOD = "0"|SYNFLOOD = "1"|g' /etc/csf/csf.conf
sed -i 's|CONNLIMIT = ""|CONNLIMIT = "80;100"|g' /etc/csf/csf.conf
sed -i 's|PORTFLOOD = ""|PORTFLOOD = "80;tcp;100;300"|g' /etc/csf/csf.conf
sed -i 's|UDPFLOOD = "0"|UDPFLOOD = "1"|g' /etc/csf/csf.conf
sed -i 's|RESTRICT_SYSLOG = "0"|RESTRICT_SYSLOG = "3"|g' /etc/csf/csf.conf
sed -i 's|#SPAMDROP|SPAMDROP|g' /etc/csf/csf.blocklists
sed -i 's|#SPAMEDROP|SPAMEDROP|g' /etc/csf/csf.blocklists
sed -i 's|#DSHIELD|DSHIELD|g' /etc/csf/csf.blocklists
sed -i 's|#TOR|TOR|g' /etc/csf/csf.blocklists
sed -i 's|#ALTTOR|ALTTOR|g' /etc/csf/csf.blocklists
sed -i 's|#BOGON|BOGON|g' /etc/csf/csf.blocklists
sed -i 's|#HONEYPOT|HONEYPOT|g' /etc/csf/csf.blocklists
sed -i 's|#CIARMY|CIARMY|g' /etc/csf/csf.blocklists
sed -i 's|#BFB|BFB|g' /etc/csf/csf.blocklists
sed -i 's|#OPENBL|OPENBL|g' /etc/csf/csf.blocklists
sed -i 's|#AUTOSHUN|AUTOSHUN|g' /etc/csf/csf.blocklists
sed -i 's|#MAXMIND|MAXMIND|g' /etc/csf/csf.blocklists
sed -i 's|#BDEALL|BDEALL|g' /etc/csf/csf.blocklists
sed -i 's|#BDE|BDE|g' /etc/csf/csf.blocklists
echo ".googlebot.com" >> /etc/csf/csf.rignore
echo ".crawl.yahoo.net" >> /etc/csf/csf.rignore
echo ".search.msn.com" >> /etc/csf/csf.rignore
perl /etc/csf/csftest.pl
csf -r
service iptables restart