Skip to content

Enable or disable automatic quarantine

Automatic quarantine in cPFence v4+ moves detected website files out of their original paths. It is off in fresh settings.

  1. Open Threat & Malware Detection, choose the server and open Settings.
  2. Set Malware Auto-Quarantine, then Save.
  3. Confirm the saved value before starting a scan.

Support users need protection-setting permission. Email quarantine is a separate setting.

Detection Settings with the Malware Auto-Quarantine switch and server context.

Choose Malware Auto-Quarantine for website files. This server’s saved values can differ from fresh defaults. Select the image for full size; use browser Back to return.

To restore this page’s defaults, follow reset feature-page settings.

Run as root on the target server:

Action Command
Enable automatic quarantine cpfence --enable-quarantine
Disable automatic quarantine cpfence --disable-quarantine

To review a full scan without automatic file moves, disable quarantine first, then run cpfence --full-scan. The scan command alone does not turn quarantine off.

Recoverable payloads are stored privately under /var/lib/cpfcli/quarantine/. Use the recovery controls rather than moving their files by hand.