How To Install A Custom Iptables Firewall
I tried to follow the howto but I noticed that the file /etc/firewall/firewall.conf.iptables is missing end this file is needed by firewall.iptables daemon.
Can anyone tell me where I can download this file or send here an example config file???
Tks in advance
OK I found out a config file to start
Hope is useful for someone else...
Im sorry about that...
Yes you need that file, but most people do... if you don't this is what to do.
Put firewall.conf.iptables, firewall.dns, firewall.banned, firewall.iana-reserved, and firewall.local.iptables (remove the "-generic" from the file names) in a directory called /etc/firewall. <-- that is if my other way didnt work, its just a case of kernel directories and dependincies.
Here u go
Those directories are where custom dependincies, user options and data output can be stored. If a directory is missing just type in
gedit /etc/firewall/firewall.conf.iptables or anything as such and you should be good.
After Installing ISPConfig iptables wont start
Please help serious security problem.
After installing ISPConfig iptables won't startup.
No error what so ever.
Flushing firewall rules: [ OK ]
Setting chains to policy ACCEPT: filter mangle nat [ OK ]
Unloading iptables modules: [ OK ]
Applying iptables firewall rules: [ OK ]
Apr 10 00:25:24 host kernel: Removing netfilter NETLINK layer.
Apr 10 00:25:24 host kernel: ip_tables: (C) 2000-2002 Netfilter core team
Apr 10 00:25:24 host kernel: Netfilter messages via NETLINK v0.30.
Apr 10 00:25:24 host kernel: ip_conntrack version 2.4 (4094 buckets, 32752 max) - 232 bytes per conntrack
Startef firewall using IPConfig, the firewall monitor page is totally different from my iptables rule !
ps -ef | grep iptables
no iptables process !
The ISPConfig firewall is the bastille firewall script taht you find in your /etc/init.d directory.
Nice to see that you fixed that one up... my first firewall script was to allow ports and services the second one was to monitor them.... its true what he said. My suggestion is that if the first one didnt work, (or the second one) just use one. Ill get on fixing that problem :cool:
bastill-firewall is just a script, it will excute iptables or ipchain.
It seem it is calling /sbin/bastill-netfilter, in my case I have iptables installed.
Question is why ISPConfig use or what is the advantage of this script ?
/sbin/bastille-netfilter is using iptables.
You can check the state of your firewall with
|All times are GMT +2. The time now is 18:49.|
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.