CWP version
1. Go to user panel.
2. Add new subdomain.
A directory created for the subdomain has permissions 640. This prevents apache (in my case) from accessing the directory and files in it, results in a 403 error.
403 error can be fixed by `chmod a+rx subdomain_directory`
Expected result:
The subdomain directory created with 644 permissions.

CSF Firewall / adding rules for OpenVPN breaks user-panel login
I don't have a slightest idea how this is related to each other, but when i add iptables rules to the FORWARD chain and nat table POSTROUTING chain through, they break user panel login (2082, 2083 ports): when you enter valid credentials login page just reloads.
Here are the rules:
iptables -A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
iptables -A FORWARD -s -j ACCEPT
iptables -t nat -A POSTROUTING -s -o eth0 -j MASQUERADE
iptables -t nat -A POSTROUTING -j SNAT --to-source #real server ip is here instead

