I received an email from Maxmind that they will drop support for unsecure database downloads. How are your products affected?

MaxMind sent out the following email below:

To ensure that you can continue to download GeoIP databases, please make the change(s) listed below prior to October 17, 2023.

Dear MaxMind customer,

We're writing because, between July 15 and August 14, we saw GeoIP download requests from your account that are not being sent with HTTPS (see details below). To improve our server infrastructure and allow for better performance and efficiency, MaxMind will begin requiring HTTPS for GeoIP download requests in March 2024. To help customers get ready for this change, we will have a planned, temporary enforcement of this policy on October 17, 2023.

What is the policy?

MaxMind will only accept GeoIP download requests sent with the more secure HTTPS protocol.

What do I need to do?

To ensure that you can continue to download GeoIP databases, please make the change(s) listed below prior to October 17, 2023. The policies will be permanently enforced in March 2024.

What's next?

We won't be able to immediately confirm that the changes you have made are working. We'll send another email next month with updated information about requests we are seeing from your account, and a third email before the planned interruption. If we don't see any GeoIP download requests that violate our policies, we'll send you an email to let you know that things look good on our end.

What if I need more help?

If you need more help or have additional questions, please contact us at support@maxmind.com.

Thanks for your attention.

Sincerely,

The Team at MaxMind

Warden Anti-spam and Virus Protection and Sentinel Anti-malware Extensions

Both extensions use https:// for all their MaxMind downloads so they are not affected.

Juggernaut Security and Firewall Extension

Juggernaut Firewall uses https:// internally for it's MaxMind downloads but the CSF versions below 14.20 were affected. To upgrade CSF to the latest version that has the fix run the command below. You can view the CSF changelog here.

csf -u
  • maxmind
  • 5 Users Found This Useful
Was this answer helpful?

Related Articles

How can I fix the error: Host '127.0.0.1' is not allowed to connect to this MariaDB server?

When looking at the server mail log you see this: Apr 4 11:01:15 alma amavis[3540852]:...

ClamAV will not start. How can I fix the ClamAV error: daily.{c[vl]d,inc} was not met?

ClamAV refuses to start and when viewing the status you see...

How can I fix any statistics generation problems?

Missing the Warden Crontab Entry There is a crontab entry that will update Warden statistics...

How can I fix the error: "milter-reject: END-OF-MESSAGE from..." in the log and found the AV in error (cannot read /etc/clam.d/scan.conf).

Cloudlinux / Imunify360 added their own version of ClamAV to their repo which accidentally...

How can I fix the error: Can't connect to TCP port 10024 on 127.0.0.0 [Address already in use] when trying to start Amavis?

When trying to start Amavis you see this in the mail log: Oct 02 03:20:15 condor3648 systemd[1]:...