Go Back   HowtoForge Forums | HowtoForge - Linux Howtos and Tutorials > Linux Forums > HOWTO-Related Questions

Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
Reply
 
Thread Tools Display Modes
  #1  
Old 2nd September 2007, 10:50
zenny zenny is offline
Senior Member
 
Join Date: Nov 2006
Posts: 176
Thanks: 20
Thanked 6 Times in 6 Posts
Default Bastille on centos4 and ping6 error?

I have installed Bastille as instructed here: http://www.howtoforge.com/bastille_firewall_centos

But at the end, it gave an error message, that reads:

ERROR: Bastille tried to use $GLOBAL_BIN{'ping6'} but it does not exist.


I checked whether I have ping6 (it did) and found the following:

-rwxr-xr-x 1 root root 33272 May 3 03:15 /bin/ping
-rwsr-xr-x 1 root root 30924 May 3 03:15 /bin/ping6
lrwxrwxrwx 1 root root 10 Aug 17 18:00 /usr/sbin/ping6 -> /bin/ping6

]# locate ping6
/bin/ping6
/usr/sbin/ping6

I checked all over the internet and could not find a solution. Some links that I tried are: http://answers.yahoo.com/question/in...7135436AA9K3iI
http://www.linuxquestions.org/questi...d.php?t=273817
http://osdir.com/ml/security.bastill.../msg00004.html
http://66.102.9.104/search?q=cache:P...nt=iceweasel-a

Everyone seems to have the same problem but could not locate a solution. Experts here, I am sure, might have encountered similar problem, and have overcome the problem. Please pass any suggestion. Thanks in advance.
Reply With Quote
Sponsored Links
  #2  
Old 3rd September 2007, 21:06
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 41,701
Thanks: 1,900
Thanked 2,735 Times in 2,571 Posts
Default

Is ping6 referenced somewhere in bastille-firewall.cfg?
__________________
Falko
--
Download the ISPConfig 3 Manual! | Check out the ISPConfig 3 Billing Module!

FB: http://www.facebook.com/howtoforge

nginx-Webhosting: Timme Hosting | Follow me on:
Reply With Quote
  #3  
Old 4th September 2007, 09:15
zenny zenny is offline
Senior Member
 
Join Date: Nov 2006
Posts: 176
Thanks: 20
Thanked 6 Times in 6 Posts
Default

Dear Falko:

Thanks for your reply.

1) Nowhere in the bastille-firewall.cfg is ping6 referenced!


2) Another problem that I am encountering with centos4.4 with openvz is that after installing the bastille, I could not access the VEs from outside even after I added venet+ as public interfaces in the bastille-firewall.cfg?

What other places that I need to tweak to get the VEs can be accessed from the internet?

Thanks again!

Last edited by zenny; 4th September 2007 at 09:23.
Reply With Quote
  #4  
Old 4th September 2007, 09:47
zenny zenny is offline
Senior Member
 
Join Date: Nov 2006
Posts: 176
Thanks: 20
Thanked 6 Times in 6 Posts
Default Solved: The second part

The ping6 part is yet unresolved. However, I solved the second part of the problem with this:

In the hardware node where I installed Bastille, I created a script at /etc/Bastille/firewall.d/post-rule.d and included the following lines to make port 80 and 22 of the VE to give access. I also added venet+ to the public interfaces in the bastille-firewall.cfg file. The contents of the post-rule.d are:

iptables -A FORWARD -p tcp -d 192.168.1.251 --dport 22 --syn -j ACCEPT
iptables -A FORWARD -p tcp -d 192.168.1.251 --dport 80 --syn -j ACCEPT
iptables -A FORWARD -s 192.168.1.251 -j ACCEPT

At the end I made the script executable by 'chmod +x post-rule.d'.

I hope it helps to someone who are having similar problem like mine.
Reply With Quote
  #5  
Old 16th April 2009, 10:50
hansbkk hansbkk is offline
Junior Member
 
Join Date: Apr 2009
Posts: 1
Thanks: 0
Thanked 0 Times in 0 Posts
 
Default Solved: the first part

From http://chihungchan.blogspot.com/2008...lbinping6.html

--------------

Explicitly define the full path of ping6 right after the package definition as shown below. Guess what, bastille runs without any error. I won't say the problem is solved, but at least I provided a workaround.
$ cat API.pm
...
...
package Bastille::API;
$GLOBAL_BIN{'ping6'}="/bin/ping6";
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT +2. The time now is 16:47.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.