#1  
Old 18th March 2006, 14:52
cybereatl cybereatl is offline
Senior Member
 
Join Date: Jan 2006
Posts: 255
Thanks: 6
Thanked 2 Times in 2 Posts
Send a message via Yahoo to cybereatl
Smile ISPConfig Security - Firewall

Hi there, Finally my installation past a complete week without any troubles!!

So, at this time am thinking in security, I've turned on firewall on ISPConfig but I've found that when you are on Management it slow down and sometimes break connection and you have to get back and log in again, plus with ftp is painfull, am using CuteFtp first time connect quick and if you log in again sits for more than 5 min, and start to attempt 1 / 5 and never connect!!!

Am thinking in install Astaro Firewall, I've tried go get assistance for installation and I never get it!! Do you guys know another firewall software to install in a stand alone machine!!

Am open to ideas at this time.

Thanks
__________________
Eli Acevedo
Reply With Quote
Sponsored Links
  #2  
Old 18th March 2006, 23:01
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lneburg, Germany
Posts: 41,711
Thanks: 1,899
Thanked 2,702 Times in 2,545 Posts
Default

Quote:
Originally Posted by cybereatl
So, at this time am thinking in security, I've turned on firewall on ISPConfig but I've found that when you are on Management it slow down and sometimes break connection and you have to get back and log in again,
Please check you have the right URL in /home/admispconfig/ispconfig/lib/config.inc.php and the correct ServerName in /root/ispconfig/httpd/conf/httpd.conf.

Quote:
Originally Posted by cybereatl
plus with ftp is painfull, am using CuteFtp first time connect quick and if you log in again sits for more than 5 min, and start to attempt 1 / 5 and never connect!!!
Have you tried both active and passive mode in your FTP client?

Quote:
Originally Posted by cybereatl
Am thinking in install Astaro Firewall, I've tried go get assistance for installation and I never get it!! Do you guys know another firewall software to install in a stand alone machine!!
You could have a look at Shorewall and Monowall.
__________________
Falko
--
Download the ISPConfig 3 Manual! | Check out the ISPConfig 3 Billing Module!

FB: http://www.facebook.com/howtoforge

nginx-Webhosting: Timme Hosting | Follow me on:
Reply With Quote
  #3  
Old 31st March 2006, 04:23
cybereatl cybereatl is offline
Senior Member
 
Join Date: Jan 2006
Posts: 255
Thanks: 6
Thanked 2 Times in 2 Posts
Send a message via Yahoo to cybereatl
Default

Hi there, It seems that really now is time to install some security on my server and I got a PIV 1.6 Ghz ready to do so, but I was reading about Shorewall and Monowall, also the downloaded cd installer an 10 year license of Astaro. I have several questions to ask.

But first, my scenario is this:

I have a dedicated channel of 1gb
1- 24 port switch with Bandwith management
2- Webserver (2) one running ISPConfig and another for streaming
3- 1 Media Station to produce videos and ftp to stream server
4- 1 Mac computer for Graphic design
5- 4 computers for regular usage

Brings out a total of 10 computers.

The intranet needs to communicate with both servers for ftp, ISPConfig and Streaming, with the switch I can set priority to those two servers and other computers can share a piece of channel.

*How many IP addresses can be handle it for Astao/Monowall right now I use 2 for ISPConfig 1 already on use and the other one as additional, the other one is for the streaming server and all other will need an static ip address manually configured.

*How do I need to configure my firewall box to be able to do that?
*What settings should I pick to do this.

Thank you for any tips or howto.
__________________
Eli Acevedo
Reply With Quote
  #4  
Old 31st March 2006, 11:07
falko falko is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lneburg, Germany
Posts: 41,711
Thanks: 1,899
Thanked 2,702 Times in 2,545 Posts
Default

Quote:
Originally Posted by cybereatl
*How many IP addresses can be handle it for Astao/Monowall right now I use 2 for ISPConfig 1 already on use and the other one as additional, the other one is for the streaming server and all other will need an static ip address manually configured.
As many as you want.

Quote:
Originally Posted by cybereatl
*How do I need to configure my firewall box to be able to do that?
*What settings should I pick to do this.

Thank you for any tips or howto.
You should have a look at IPCop. it's free, and we even have a tutorial about it: http://www.howtoforge.com/perfect_linux_firewall_ipcop
__________________
Falko
--
Download the ISPConfig 3 Manual! | Check out the ISPConfig 3 Billing Module!

FB: http://www.facebook.com/howtoforge

nginx-Webhosting: Timme Hosting | Follow me on:
Reply With Quote
  #5  
Old 2nd April 2006, 04:15
cybereatl cybereatl is offline
Senior Member
 
Join Date: Jan 2006
Posts: 255
Thanks: 6
Thanked 2 Times in 2 Posts
Send a message via Yahoo to cybereatl
Default

Thank you for your help Falko,

Just a little concern about IPcop, the graphic is showing two switches but one can work, but you can set a different ip range for computers that actually work directly to the servers i.e. production 192.168.100.1 / 2 / 3 and for other computers who share internet access 192.168.2.100 /101 / xxx and so on.

That configuration it may work ok, what do you think??

* Once IPcop is set how will be the process for ISPConfig to be under this firewall??

Thanks
__________________
Eli Acevedo
Reply With Quote
  #6  
Old 2nd April 2006, 17:02
till till is offline
Super Moderator
 
Join Date: Apr 2005
Location: Lneburg, Germany
Posts: 34,586
Thanks: 792
Thanked 4,983 Times in 3,903 Posts
 
Default

Quote:
Originally Posted by cybereatl
Once IPcop is set how will be the process for ISPConfig to be under this firewall??
As IPCop and ISPConfig run on different servers, you dont have to reconfigure ISPConfig. Just make sure you forwarded the nescessary ports from IPCop to your ISPConfig server.
__________________
Till Brehm
--
Get ISPConfig support and the ISPConfig 3 manual from ispconfig.org.
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Performance issues outside firewall with ISPConfig console baasgaas Installation/Configuration 1 24th February 2006 09:31
ISPConfig firewall issue dwyoung Installation/Configuration 5 12th December 2005 10:26
I need a suitable firewall. agul Server Operation 4 23rd November 2005 00:12
ISPConfig Firewall and no sense MyLinux General 7 9th September 2005 17:35
Firewall and ISPConfig MyLinux General 3 7th September 2005 09:36


All times are GMT +2. The time now is 20:38.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.