[suse-sles-e] firewall rule "oops!"

From: Denis Brown (dsbrown_at_cyllene.uwa.edu.au)
Date: Tue May 09 2006 - 07:27:06 CEST


Message-Id: <6.2.1.2.2.20060509131849.03264eb0@cyllene.uwa.edu.au>
Date: Tue, 09 May 2006 13:27:06 +0800
From: Denis Brown <dsbrown@cyllene.uwa.edu.au>
Subject: [suse-sles-e] firewall rule "oops!"

Dear List members,

Performed an upgrade (yast2) which included a firewall security(?)
upgrade. Tested access to the server from a machine that normally should
not have had access (blocked IP), and found that the server was pretty much
open to the World. Not Good :-(

No worries thought I... just "iptables-restore < my-previously-saved-ruleset"

But, there must have been some significant changes in the firewall
implementation, or at least its ability to read previous rulesets.

Now when I did "iptables -L" I just got a blank list - no rules at
all!!! And the server (now turned off) was wide open to all comers.

Question: is there, somewhere in the SuSE repository, the default (new)
ruleset that I could just insert a la iptables-restore?

Or will I need to remove iptables and re-install it from the CD set, then
do another yast2 upgrade to get back to where I was a short time ago...
ready to edit in my rules?

Thanks in advance,
Denis

---------------------------------------------------------------------
To unsubscribe, e-mail: suse-sles-e-unsubscribe@suse.com
For additional commands, e-mail: suse-sles-e-help@suse.com



This archive was generated by hypermail 2.1.7 : Tue May 09 2006 - 07:27:19 CEST