Re: [CentOS] CentOS-7 Screen black after boot

2016-06-29 Thread Venkata Balaji N
On Thu, Jun 30, 2016 at 11:41 AM, Earl A Ramirez wrote: > On 30 Jun 2016 09:34, "Venkata Balaji N" wrote: > > > > Hello Community, > > > > This is my first ever email to CentOS community. Firstly, CentOS is a > great > > open-source operating system. I

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Gordon Messmer
On 06/29/2016 05:19 PM, Always Learning wrote: Later he adds to that empty iptables configuration. Long-winded, but nothing wrong. Saving doesn't "add" to the empty configuration, it replaced the empty config. I didn't say it was wrong, I said the saved rules are thrown away. The initial

Re: [CentOS] CentOS-7 Screen black after boot

2016-06-29 Thread Earl A Ramirez
On 30 Jun 2016 09:34, "Venkata Balaji N" wrote: > > Hello Community, > > This is my first ever email to CentOS community. Firstly, CentOS is a great > open-source operating system. I have been using it for years and > recommending the same for production use to our customers. >

[CentOS] CentOS-7 Screen black after boot

2016-06-29 Thread Venkata Balaji N
Hello Community, This is my first ever email to CentOS community. Firstly, CentOS is a great open-source operating system. I have been using it for years and recommending the same for production use to our customers. I have installed CentOS-7 operating system couple of days ago and everything

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Anthony K
On 30/06/16 02:37, Leon Vergottini wrote: Thank you once again to all. I have learned a lot from you replies. And I from you. The funny thing is that I have my rule set with exactly the same default DROP policy for all chains and several DROP rules at the beginning of my script. I must

Re: [CentOS] .NET on Centos.

2016-06-29 Thread Gener Badenas
On Wed, Jun 29, 2016 at 1:52 AM, Johnny Hughes wrote: > On 06/28/2016 12:17 PM, Peter Q. wrote: > > Hi there, I was reading about it. > > > https://www.redhat.com/en/about/blog/net-core-now-available-and-supported-red-hat-enterprise-linux-and-red-hat-openshift > > > > What

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Always Learning
On Wed, 2016-06-29 at 10:49 -0700, Gordon Messmer wrote: > On 06/29/2016 03:00 AM, Leon Vergottini wrote: > > #!/bin/bash > > > > # RESET CURRENT RULE BASE > > iptables -F > > service iptables save > Why would you save the existing rule set? This script throws it away > later, when it runs

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Gordon Messmer
On 06/29/2016 12:51 PM, Dennis Jacobfeuerborn wrote: On 29.06.2016 12:00, Leon Vergottini wrote: # -- # SAVE & APPLY # -- service iptables save service iptables restart You shouldn't

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Dennis Jacobfeuerborn
On 29.06.2016 12:00, Leon Vergottini wrote: > Dear Members > > I hope you are all doing well. > > I am busy teaching myself iptables and was wondering if I may get some > advise. The scenario is the following: > > >1. Default policy is to block all traffic >2. Allow web traffic and

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Gordon Messmer
On 06/29/2016 03:00 AM, Leon Vergottini wrote: #!/bin/bash # RESET CURRENT RULE BASE iptables -F service iptables save Why would you save the existing rule set? This script throws it away later, when it runs save again. # MOST COMMON ATTACKS iptables -A INPUT -p tcp --tcp-flags ALL

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Leon Vergottini
Dear Members Thank you for your replies. @Anthony K. -- One of the articles that I have read mentioned that the file gets read from the top to bottom and apply the rules accordingly. In addition the article also explained that if there is no matching rule, the default policy will be applied.

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread l...@avc.su
Hello Leon. In addition to everything else mentioned in this thread, I'd recommend you a great book on the topic. "Attack Detection and Response with iptables, psad, and fwsnort by Michael Rash" It contains a really nice and detailed guide on iptables and most common attacks, nmap, psad and

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Paul Heinlein
On Wed, 29 Jun 2016, Leon Vergottini wrote: I am busy teaching myself iptables [] How secure is this setup? Is there any mistakes or things that I need to look out for? It's only as secure as your web stack (and, in your case, SSH configuration). Packet filtering is a necessary

Re: [CentOS] VNC server issue- Gnome - oh no! Something has gone wrong

2016-06-29 Thread Johnny Hughes
On 06/29/2016 07:51 AM, Hersh wrote: > Hi All, > > The other thing we have noticed after booting is, screen is completely > blank. GUI is not visible on attached monitor. > > We tried switching between different terminals using (Ctl+Alt+F1-12). F2-6 > are showing command line terminals but,

Re: [CentOS] VNC server issue- Gnome - oh no! Something has gone wrong

2016-06-29 Thread m . roth
Hersh wrote: > Hi All, > > The other thing we have noticed after booting is, screen is completely > blank. GUI is not visible on attached monitor. > > We tried switching between different terminals using (Ctl+Alt+F1-12). F2-6 > are showing command line terminals but, others are returning blank

Re: [CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Anthony K
On 29/06/16 20:00, Leon Vergottini wrote: # DEFAULT FIREWALL POLICY iptables -P INPUT DROP iptables -P FORWARD DROP iptables -P OUTPUT DROP # -- # INPUT CHAIN RULES # -- # MOST COMMON

Re: [CentOS] VNC server issue- Gnome - oh no! Something has gone wrong

2016-06-29 Thread Hersh
Hi All, The other thing we have noticed after booting is, screen is completely blank. GUI is not visible on attached monitor. We tried switching between different terminals using (Ctl+Alt+F1-12). F2-6 are showing command line terminals but, others are returning blank screen only. It appears

[CentOS] CentOS-announce Digest, Vol 136, Issue 6

2016-06-29 Thread centos-announce-request
Send CentOS-announce mailing list submissions to centos-annou...@centos.org To subscribe or unsubscribe via the World Wide Web, visit https://lists.centos.org/mailman/listinfo/centos-announce or, via email, send a message with subject or body 'help' to

[CentOS] [CENTOS ]IPTABLES - How Secure & Best Practice

2016-06-29 Thread Leon Vergottini
Dear Members I hope you are all doing well. I am busy teaching myself iptables and was wondering if I may get some advise. The scenario is the following: 1. Default policy is to block all traffic 2. Allow web traffic and SSH 3. Allow other applications I have come up with the