For almost a year, ReadyWire Multimedia Solutions has offered Virtual Private Server services.  Because all of our Virtual Private Serverservices are fully managed, we install a number of software titles before releasing login details to our clients.

CSF Firewall is preinstalled on all ReadyWire Managed VPS Servers

CSF Firewall is preinstalled on all ReadyWire Managed VPS Servers

One of the many software titles that we install and configure free of charge is ConfigServer Firewall.  We’ve tried many of the open source firewall applications out there, and have found CSF to be the most efficient, easy to manage, and well developed software applications available to date.

If you are using a VPS container that is powered by Monolithic kernels (i.e.: VPS OpenVZ & Paralle’s Virtuozzo),  you’ll want to make yourself aware that a couple of the IP Tables modules running on the host node ( ip_conntrack & ip_conntrack_ftp) may not function properly for you.  If this does apply to you, you’ll need to make a couple of modifications to your FTP server’s configuration file, as well as CSF’s configuration file.

1.)  Login to your server as root

2.)  Run the following command:

A.  If you are running pure-ftpd:

# nano /etc/pure-ftpd.conf

Then, search for the line that reads “PassivePortRange” and uncomment this line by removing the ‘#”

B.  If you are using ProFTPD:

# nano /etc/proftpd.conf and then search for the lin that reads “PassivePorts.”  Uncomment this line.

3.)  Restart your FTP server.

4.)  Now, we need to tweak CSF’s configuration file.  Since we’re already logged into the server via SSH, we’ll go about making the changes through the terminal window.  However, you can always make the following necessary modification by logging into WHM.

In your terminal window, complete the following steps:

A.)  #  cd /etc/csf
B.)  #  nano csf.conf
C.)  Search for the line that reads “TCP_IN”
D.)  Add the port numbers you saw in your ftp configuration just a moment ago to this line so that it reads similar to the following:

# Allow incoming TCP ports
TCP_IN = “20,21,22,25,53,80,110,143,443,465,587,993,995,2077,2078,2082,2083,2086,2087,2095,2096,1891,30000:50000″

E.)  Once you have mad the above modification, save the file.
F.)  Restart CSF & LFD by running the following command:

# service csf restart

Is it time to find a new Virtual Private Server provider?  ReadyWire Multimedia Solutions Virtual Private Servers feature a combination of the latest server-grade hardware components and industry-leading virtualization software, OpenVZ. Each managed VPS is truly a unique and private environment with its own guaranteed resources and full root access.

ReadyWire Multimedia Solutions Virtual Private Servers are fully managed.  Each server includes our complete management solution, which includes hardware management and network management, operating system and software support, proactive security patches and updates, proactive monitoring, custom firewall configuration, spam prevention, server hardening and more.

Click here to learn more about ReadyWire!

Leave a Reply