OT: building a new MS machine and stuck at the firewall

Dave dmehler26 at woh.rr.com
Tue Feb 28 03:25:01 GMT 2006


Hi,
    I'd be very interested in knowing about a config utility for iptables. 
I've got two boxes, primary and secondary nameservers running bind9 that 
iptables when running does not allow zone queries and i'm getting flickering 
timeouts. I'm also getting a new CentOS box within the next 1 to two weeks 
that will be a dedicated mail server, ms-mta-sa-the works and i'd like to 
not have to fight the firewall.
Thanks.
Dave.

----- Original Message ----- 
From: "Julian Field" <MailScanner at ecs.soton.ac.uk>
To: "MailScanner discussion" <mailscanner at lists.mailscanner.info>
Sent: Monday, February 27, 2006 3:32 PM
Subject: Re: OT: building a new MS machine and stuck at the firewall


> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
>
>
> Joshua Hirsh wrote:
>>> Any simple command ex: service firewall stop chkconfig firewall or
>>> something to turn it off?
>>>
>>
>>
>> Hi Billy,
>>
>>  You have a few options:
>>
>>  1) type 'setup' as root and disable the firewall from there
>>  2) type 'service iptables stop', and 'chkconfig iptables off' (this 
>> disabled the firewall startup script)
>>  3) for a temporary removal until next reboot, type 'iptables -F' (this 
>> flushes out the iptables rules)
>>
> Once you've got iptables in, how do you configure it?
> Presumably there are some reasonable firewall configuration tools
> included with RHEL/CentOS?
> I've always just done it the hard way, any time I've needed it (which is
> rarely, we have FW-1 connected to an active IDS), but there must be an
> easy way.
>
> - -- 
> Julian Field
> www.MailScanner.info
> Buy the MailScanner book at www.MailScanner.info/store
> Professional Support Services at www.MailScanner.biz
> MailScanner thanks transtec Computers for their support
>
> PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654
>
>
> -----BEGIN PGP SIGNATURE-----
> Version: PGP Desktop 9.0.5 (Build 5050)
>
> iQA/AwUBRANh3RH2WUcUFbZUEQLNAQCg9nXA4V/l/WAU1w57bqtLnBVr8pwAoK4x
> ZXeOnpzopydwEmppc7JBgj1m
> =lGQH
> -----END PGP SIGNATURE-----
>
> -- 
> This message has been scanned for viruses and
> dangerous content by MailScanner, and is
> believed to be clean.
>
> -- 
> MailScanner mailing list
> mailscanner at lists.mailscanner.info
> http://lists.mailscanner.info/mailman/listinfo/mailscanner
>
> Before posting, read http://wiki.mailscanner.info/posting
>
> Support MailScanner development - buy the book off the website! 



More information about the MailScanner mailing list