Client Agent Updates

Client agent: 1.0.1 has been released:

  • Updated default “mod_security” configuration.
  • Bug fixes.

New script is available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

Nice clean install & exclusion list remembered previous rules :slight_smile:

good job guys…
keep improving.

Client Agent 1.1 has been released:

  • Implementation of the client updating system.
  • New installation dialog.
  • Uninstall script.
  • Improvements and bug fixes.

New script is available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

Hi,

There is a problem in uninstall and installation of the new version!

Run the command bash /var/cpanel/cwaf/scripts/uninstall_cwaf.sh but the option COMODO WAF is still available in WHM/cPanel. Not completely removed!

Looking at the directorie /usr/local/cpanel/whostmgr/docroot/cgi there are still files of the plugin:

  1. cwaf_catalog.cgi
  2. cwaf_main.cgi
  3. cwaf_sharedlib.pl

Can I remove the files manually?

And when you try to install again the new install ‘waf.comodo.com/cpanel/cwaf_client_install.sh’ you provided I get the error:

Verifying archive integrity…Error in MD5 checksums: dbcc9807d3f6c60cf1e49ba4f1a55e6f is different from 0783fa463f1f043a9c1834a1f991acb4

How do I completely remove the plugin and reinstall it again using the new version?

Same problem now I have a server with no CWAF protection

Same problem now I have a server with no CWAF protection

Seems your install script was downloaded incorrectly. Please try to download it again:

wget https://waf.comodo.com/cpanel/cwaf_client_install.sh

Check MD5 sum:

md5sum cwaf_client_install.sh 61e7cdfd5c41da782a99329d6f1df7bf cwaf_client_install.sh

There is no need to run uninstall script to update client. Installer will do it automatically and will save your exclude list. Uninstall script, provided in version 1.0.1 is deprecated and reworked completely in new version. So if you really want to uninstall CWAF please use new uninstall script provided with version 1.1. Please note, that in the case of uninstall, all your exclude entries and CWAF customization will be lost.

If you already run deprecated uninstall script, please try to implement next steps for restoring normal work:

[ol]- Edit /usr/local/apache/conf/modsec2.conf

Just comment second line counting from bottom (adding ‘#’ at beginning):

Include "/var/cpanel/cwaf/etc/cwaf.conf"

after change it should look:

#Include "/var/cpanel/cwaf/etc/cwaf.conf"

  • Run new installer, version 1.1.

sh ./cwaf_client_install.sh

[/ol]

If second entry of plugin in the WHM still appear do following steps:

[ol]- Clean plugin registration information:

/usr/local/cpanel/bin/unregister_appconfig /var/cpanel/apps/addon_cwaf.conf

  • Install CWAF 1.1 from scratch:

sh ./cwaf_client_install.sh

[/ol]

Problem was resolved thank you :slight_smile:

Client Agent 1.2 has been released:

  • Rules Catalog - flexible exclude list management:

[li]List of all Comodo rules divided by groups.

  • Exclude rules and groups of rules.
  • Management of global excludes lists and excludes for virtual hosts.

[/li]

  • Improvements and bug fixes.

Now you may update your client from cPanel plugin: “Main” → “New client is available” → “Update Plugin”

Or download and install new script, available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

All your current exclude rules will be stored during update procedure. You may find backup of your exclude list by the path:

for cPanel:

/var/cpanel/cwaf/etc/httpd/global/zzz_exclude_global.conf.backup

for stand-alone mode:

/CWAF_INSTALL_DIR/etc/httpd/global/zzz_exclude_global.conf.backup

Nice clean install and all working fine :slight_smile:

Cheers!

Client Agent 1.3 has been released:

  • Management of Security Engine (ModSecurity) configuration.
  • Improvements and bug fixes.

Now you may easy change your ModSecurity configuration from cPanel plugin, e.g. you may set Security Engine Off to disable all rules or change a level of debug log.

You may update your client from cPanel plugin: “Main” → “New client is available” or download and install new script, available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

Client Agent 1.4 has been released:

  • Global search of the rule.
  • Improvements and bug fixes.

Now you may easy find rule by ID from cPanel plugin (Catalog → Search By Rule ID).

You may update your client from cPanel plugin: “Main” → “New client is available” or download and install new script, available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

The online update for rules works fine, but the online update for the plugin doesn’t:

06/03/14 22:16:40 update-client[26749] debug is ON, level = 10
06/03/14 22:16:40 update-client[26749] create pid file
06/03/14 22:16:40 update-client[26749] WARN: another process is started (24497)
06/03/14 22:16:40 update-client[26749] update process finished!

Page reloads and then it still shows the plugin as 1.3 with 1.4 being available. Even clearing cache, logout then login. Will try a manual update

Edit
Manual update sorted it out, now latest plugin & rules :slight_smile:

What browser (version) do you use? Seems update process was started a several times simultaneously.

Maxthon Cloud

Client Agent 1.5 has been released:

  • Support of LiteSpeed web-server.
  • Improvements and bug fixes.

Now client agent and cPanel plugin support LiteSpeed web-server. You may download and install new script, available by link: https://waf.comodo.com/cpanel/cwaf_client_install.sh

If you already use Comodo WAF Client with Apache and you want switch to LiteSpeed:

  • Uninstall client agent: /var/cpanel/cwaf/scripts/uninstall_cwaf.sh
  • Download new version and install it choosing LiteSpeed platform.

Just one problem:

Forbidden

You don’t have permission to access /cpanel/cwaf_client_install.sh on this server.

Apache Server at waf.comodo.com Port 443

Seems it was some temporarily connection issue. Please try again.

Sorry posted on wrong thread