On 2006 July 17 12:52, Ricardo Castanho de Oliveira Freitas wrote:

> Firewall was down! ;-(

How did you check that it's down? Did you check the shorewall service, or the 
iptables service? Also, did you check in mcc, or with the service command, or 
something more primitive like ps?

My understanding (which could be wrong) is that the shorewall service can be 
down, and you're still firewalled if iptables is up. iptables is the actual 
firewall service. shorewall is one of a number of iptables configuration 
services (because raw iptables configuration is tricky).

Also, my mcc -> System -> Services claims that iptables is down, but the 
command "service iptables status" tells me that it is up. This seems to be a 
long-standing mcc bug (at least since 10.1, if not earlier). I suspect that 
mcc is just calling the service command and parsing the output, but because 
the iptables status spits out a whole list of configuration info instead of a 
simple "iptables (pid ...) is running" like most services, it gets confused 
and assumes the service is down.

If you want to be sure your firewall is down, do the following as root:

service shorewall stop
service iptables stop

Ron

-- 
Opinions are mine. Don't blame anyone else. Rely on them at your own risk.
____________________________________________________
Want to buy your Pack or Services from Mandriva? 
Go to http://store.mandriva.com
Join the Club : http://www.mandrivaclub.com
____________________________________________________

Reply via email to