Bobcares

Disable LFD email alerts – Different ways to do it !

by | Dec 18, 2019

Is your mailbox full of LFD email alerts? The best way for this problem is to disable lfd email alert.

LFD service sends excessive resource usage alerts to the email address assigned to it.

Often due to faulty LFD configuration, these email alerts can be frustrating to users.

At Bobcares, we often receive requests to disable lfd email alerts as part of our Server Management Services.

Today, let’s have a deep discussion on this topic and see how we selectively disable the lfd alert for our customers.

 

What is lfd email alerts?

LFD is a daemon process that runs on the servers, which uses CSF for server security. And it comes pre-installed on the servers with cPanel. Also, it offers many helpful features to ensure server security.

Moreover, the lfd email alerts help to watch the server important security events. But sometimes these notifications can be confusing to the uninitiated.

Normally, it helps to find out the server security issues. And sometimes it’s very confusing to the users to find out the exact issues on the server.  So, most of the users prefer to disable such lfd notifications on their servers.

 

Different ways to disable lfd alerts?

Till now we discussed lfd email alert in detail. Now let’s see how our Support Engineers disable the lfd email alerts in different ways for our customers.

 

1. Disable a particular feature from CSF configuration.

Recently one of our customers contacted us to disable LFD excessive resource usage alert from his server. So to disable the email alert, we followed the below steps.

1. First, we logged into the server via SSH.

2. Then we open the CSF configuration file >> (/etc/csf/csf.conf) and searched the directive >> ‘PT_USERMEM’.

We found that the value of PT_USERMEM was set to 200. To disable this feature we set to 0.

3. And we set the value of PT_USERMEM to ‘0’ to disable this feature from CSF.

 

2. Increase the value of ‘PT_USERMEM’ and ‘PT_USERTIME’ from the CSF configuration file.

In this method, we increased the values of both memory and time to disable the LFD alerts. This method is a temporary one. Normally, if any process/service uses more resources than defined, it continues to receive the LFD alerts.

So we increased the value of memory and time than the default value.

  1. First, we logged into the WHM.
  2. Then we Open the CSF Firewall configuration >> vi /etc/csf/csf.conf
  3. After, we modified the value of directives PT_USERMEM and PT_USERTIME to desired.
PT_USERMEM = 500

PT_USERTIME = 150000

4. At last, we saved the changes.

 

3. Add the process in the file /etc/csf/csf.pignore that needs to disable

This is the other method of disabling the particular process from the CSF configuration file. There is a file in CSF directory ‘csf.pignore’. 

So we can add the process or the user which wants to ignore this type of alert into this file.

1. First, we logged into the server.

2. Then we opened the below file.

[root@bobserver #] vim /etc/csf/csf.pignore

3. Next, we added the process name on it.

4. Then after, we restart the CSF and LFD service.

service lfd restart

To restart the CSF we used this command.

csf -r

 

4.Disable All cPanel LFD Alerts

If the customers get too many emails regarding all LFD alerts, it’s better to disable all Cpanel lfd alerts.

So, to disable all Cpanel lfd alerts, we followed the below steps.

1. First, we logged into the WHM.

2. Then, we navigate to >> “ConfigServer Security & Firewall” under >> “Plugin” section.

3. Next, we click on “>> Firewall Configuration” button to edit the CSF configuration file

4. Next, we search for “LF_EMAIL_ALERT” on the configuration file and change it from >> “On” to “Off” button.

5. At last, we clicked on the “Change” button to save the changes.

6. Then we restarted the CSF and LFD service.

Also, to do the same via the SSH terminal,

1. First, we logged into the server via SSH

2. Then we opened the CSF configuration file and searched for >>LF_EMAIL_ALERT and set the value with 0.

# vi /etc/csf/csf.conf

LF_EMAIL_ALERT =0

3. Then we restarted the CSF and LFD alert.

Thus, it fixed the customer’s problem with the lfd alert.

 

[Need more assistance to disable lfd email alerts? We’ll help you]

 

Conclusion

In short, LFD daemon uses CSF for server security and sends email alerts about important security events. But sometimes these notifications can be confusing to the uninitiated. In today’s writeup, we discussed how our Support Engineers disabled the lfd alert for our customers.

0 Comments

Submit a Comment

Your email address will not be published. Required fields are marked *

Never again lose customers to poor
server speed! Let us help you.

Privacy Preference Center

Necessary

Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.

PHPSESSID - Preserves user session state across page requests.

gdpr[consent_types] - Used to store user consents.

gdpr[allowed_cookies] - Used to store user allowed cookies.

PHPSESSID, gdpr[consent_types], gdpr[allowed_cookies]
PHPSESSID
WHMCSpKDlPzh2chML

Statistics

Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.

_ga - Preserves user session state across page requests.

_gat - Used by Google Analytics to throttle request rate

_gid - Registers a unique ID that is used to generate statistical data on how you use the website.

smartlookCookie - Used to collect user device and location information of the site visitors to improve the websites User Experience.

_ga, _gat, _gid
_ga, _gat, _gid
smartlookCookie
_clck, _clsk, CLID, ANONCHK, MR, MUID, SM

Marketing

Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.

IDE - Used by Google DoubleClick to register and report the website user's actions after viewing or clicking one of the advertiser's ads with the purpose of measuring the efficacy of an ad and to present targeted ads to the user.

test_cookie - Used to check if the user's browser supports cookies.

1P_JAR - Google cookie. These cookies are used to collect website statistics and track conversion rates.

NID - Registers a unique ID that identifies a returning user's device. The ID is used for serving ads that are most relevant to the user.

DV - Google ad personalisation

_reb2bgeo - The visitor's geographical location

_reb2bloaded - Whether or not the script loaded for the visitor

_reb2bref - The referring URL for the visit

_reb2bsessionID - The visitor's RB2B session ID

_reb2buid - The visitor's RB2B user ID

IDE, test_cookie, 1P_JAR, NID, DV, NID
IDE, test_cookie
1P_JAR, NID, DV
NID
hblid
_reb2bgeo, _reb2bloaded, _reb2bref, _reb2bsessionID, _reb2buid

Security

These are essential site cookies, used by the google reCAPTCHA. These cookies use an unique identifier to verify if a visitor is human or a bot.

SID, APISID, HSID, NID, PREF
SID, APISID, HSID, NID, PREF