Firewall & Security Hardening

As a cPanel end user, how you can identify if CSF has blacklisted your IP and how to fix it

By the Domain India teamPublished 6 min read
Knowledge base article
Contents (5 sections)

If your website, cPanel, webmail or email app suddenly times out on your office or home connection but works on mobile data, the server's firewall has most likely blocked your IP address after repeated failed logins. On Domain India cPanel hosting you cannot see or remove that block yourself, so the fix is to find your public IP, correct the device with the wrong password, and send the IP to support.

For the full guide, see I can't reach my server: have I been blocked?

This page is the short cPanel version. The full checklist, including DirectAdmin, Webuzo and VPS firewalls, is in I can't reach my server: have I been blocked?

Key takeaways

A firewall block looks like a timeout that affects only your connection: the site opens on mobile data or for someone in another city. As a cPanel user you have no access to the firewall, so look up your public IP address from the blocked connection, fix the saved password on every device, and send the IP to Domain India support by ticket or live chat. Our team checks the firewall and removes the block.

1. Check whether it is a block

TestPoints to an IP blockPoints to a site or server problem
Open the site on mobile data, Wi-Fi offIt worksIt fails too
Ask someone elsewhere to open itIt works for themIt fails for them too
What the browser showsA spinning page, then "connection timed out"An error page such as 500 or 503

A timeout means the server is not answering you at all. An error page means the server is answering, so the problem is in the website, not a block.

2. Why the firewall blocked you

Shared hosting servers watch for failed logins to email, FTP, SSH, webmail and cPanel, and block an address that fails too often. On cPanel servers this includes cPanel's own brute-force protection (cPHulk) as well as the server firewall. The protection cannot tell a password-guessing bot from your own phone with an old password saved in it.

Common triggers:

  • a phone, tablet or laptop still using an email password you have changed;
  • Outlook or a phone mail app retrying with the wrong password or port;
  • an FTP client with old saved details;
  • several wrong attempts at the cPanel or webmail login page.

Your office shares one public IP, so one device with a bad password blocks everyone on that connection.

3. Get unblocked

  1. Find your public IP.
    On the blocked connection (not mobile data), search "what is my IP" or open ifconfig.me. If you see an IPv4 and an IPv6 address, note both. A 192.168.x.x or 10.x.x.x address is private and is not the one we need.
  2. Fix the password first.
    Correct the saved password on every device and app, or switch them off for now. If a device keeps retrying, the block comes back.
  3. Contact support.
    Send the IP address, your domain and the service that stopped working through a new ticket, the public ticket form if you cannot log in, or 24/7 live chat. There is no phone support.
  4. Test, then bring devices back one at a time.
    Once support confirms the block is removed, check the site from the office network and reconnect each device separately.
Send your IP, never your password

Support needs only your IP address, domain and the service that failed. Don't paste cPanel or mailbox passwords into a ticket or chat.

Tickets get a first response within 15 minutes; removing the block can take longer depending on the issue.

4. Stop it happening again

  • Keep a list of every device that uses each mailbox, and update them all whenever a password changes.
  • Use the mail settings shown for your mailbox in cPanel, so the port matches the SSL/TLS option. The settings are explained in how to log into webmail.
  • Remove old mail accounts from phones that former staff used.
  • For SSH, use a key. Jailed SSH is available on every shared hosting plan; it is off by default, and support enables it on request. See enabling and accessing jailed SSH.

If you run your own VPS, the firewall is yours and you remove the block yourself; the commands are in how to diagnose and resolve CSF IP blocks.

Frequently asked questions

How can a cPanel user tell if the server firewall has blocked their IP?

If the website, cPanel, webmail or email times out on your usual connection but works on mobile data or for someone elsewhere, your IP address has most likely been blocked after repeated failed logins.

Can I unblock my IP myself from cPanel?

No. On Domain India shared hosting the firewall belongs to the server, and cPanel users have no access to it. Send your public IP address to support by ticket or live chat and our team removes the block.

Why was I blocked when my password is correct?

Usually another device on the same connection kept trying an old password, such as a phone mail app after a password change. Everyone behind the same public IP is blocked together.

Which IP address should I send to support?

Your public IP address, looked up from the blocked connection by searching "what is my IP". Send both the IPv4 and IPv6 addresses if you have both. Private addresses such as 192.168.x.x are not useful.

Will I be blocked again?

Yes, if a device with the wrong password is still trying to log in. Correct the saved password on every phone, computer and app before the block is removed.

Ready to get back in? Send your public IP through a new support ticket, or use the public ticket form from mobile data if the client area will not open. The complete guide is I can't reach my server: have I been blocked?

Blocked from your hosting?

Tell us your public IP address, your domain and the service that stopped working, and our team will check the server firewall for you.

Open a support ticket

Ready when you are

Get VPS from ₹552.65/mo + GST

See plans

Was this article helpful?

Your answer helps us decide what to improve next.

Still need help? Open a support ticket and our team will reply.

Prefer an app? Add this site to your home screen.Get the app
cPanel IP blocked by the firewall? Check and get unblocked