Welcome to Linux Forums!

With a comprehensive Linux Forum, information on various types of Linux software and many Linux Reviews articles, we have all the knowledge you need a click away, or accessible via our knowledgeable members.

Linux Forum ArticlesLinux ForumsLinux Forum DownloadsLinux HostsFree MagazinesJobs
Home|Register|FAQ|Member List|Calendar|Unanswered Posts|Forum Rules|Today's Posts|Advanced Search|
SEARCH FOR IN
Go Back   Linux Forums > Your Distro > Redhat / Fedora Linux Help
Reload this Page where are the firewall config & logs??
Linux Forums
Linux Forums
Welcome To The Linux Forums!
Welcome to Linux Forums. We pride ourselves in being one of the largest Linux communities on the web, we encourage you to REGISTER on our forums and participate in the community. There are over 150,000 members ready to answer your questions. JOINING US today will allow you to make new posts, get support, send messages to other members and submit downloads to our downloads directory and many other great features!

Redhat / Fedora Linux Help Help and discussion related to Redhat and Fedora Linux.

Reply
 
Thread Tools Display Modes
Old 07-07-2008   #1 (permalink)
Just Joined!
 
callagga's Avatar
 
Join Date: Jan 2008
Posts: 10
Question where are the firewall config & logs??

Hi,

I've updated my firewall "advanced" tab however I still seem to be able to log in remotely via ports I believe should be closed..

Q1 - Do you need to do something to refresh/enable the latest firewall settings you put in place via the web admin tool ?

Q2 - Where are the config files in redhat I could look directly at to see my firewall rules?

Q3 - Is there a firewall log that exists (or I could enable) to see firewall in action (i.e. see an incoming request to port 3001 and it come through, and ideally which firewall rule allowed this through, as well as those requests that get blocked).

Thanks in advance
callagga is offline   Reply With Quote
Old 07-07-2008   #2 (permalink)
Just Joined!
 
Join Date: Mar 2008
Location: /dev/null
Posts: 12
To check for firewall config, open a terminal, enter: /sbin/iptables -L

This will list all your rules.

Also, never ever should you use the GUI tools for setting up a firewall. They are too primitive. You should use a bash script for setting up the firewall and for testing. Once the firewall is production ready, you should use "iptables save" and stop using the script.
21064A is offline   Reply With Quote
Old 07-07-2008   #3 (permalink)
Linux Engineer
 
Thrillhouse's Avatar
 
Join Date: Jun 2006
Location: Arlington, VA, USA
Posts: 1,232
Quote:
Originally Posted by callagga View Post
Q3 - Is there a firewall log that exists (or I could enable) to see firewall in action (i.e. see an incoming request to port 3001 and it come through, and ideally which firewall rule allowed this through, as well as those requests that get blocked).
Usually firewall messages are only written to a log file if you specify the LOG target in the rule. If you do have a LOG rule, any packets that match its criteria will output a message to /var/log/messages.
Thrillhouse is offline   Reply With Quote
Old 07-07-2008   #4 (permalink)
Linux Enthusiast
 
Lazydog's Avatar
 
Join Date: Jun 2004
Location: Pennsylvania
Posts: 515
Quote:
Originally Posted by callagga View Post
Q1 - Do you need to do something to refresh/enable the latest firewall settings you put in place via the web admin tool ?
You could always stop and restart the firewall with the following with root privs;

/sbin/service iptables restart

Quote:
Q2 - Where are the config files in redhat I could look directly at to see my firewall rules?
Firewall rules are located in;

/etc/sysconfig/iptables

Quote:
Q3 - Is there a firewall log that exists (or I could enable) to see firewall in action (i.e. see an incoming request to port 3001 and it come through, and ideally which firewall rule allowed this through, as well as those requests that get blocked).

Thanks in advance
You will need to setup your firewall to log everything you want to see. I don't use any tools for configuring my firewall, I do it by hand, so I'm not going to be able to help you much here. Sorry.
__________________

Regards
Robert

It is not just an adventure.
It is my job!!

Linux User #296285
Get Counted
Lazydog is offline   Reply With Quote
Old 07-07-2008   #5 (permalink)
Just Joined!
 
callagga's Avatar
 
Join Date: Jan 2008
Posts: 10
Quote:
Originally Posted by Thrillhouse View Post
Usually firewall messages are only written to a log file if you specify the LOG target in the rule. If you do have a LOG rule, any packets that match its criteria will output a message to /var/log/messages.
thanks Thrillhouse, you wouldn't have an example iptable command that sets up logging would you? just reading the doco at the moment it doesn't seem crystal clear...

tks
callagga is offline   Reply With Quote
Old 07-07-2008   #6 (permalink)
Just Joined!
 
callagga's Avatar
 
Join Date: Jan 2008
Posts: 10
Quote:
Originally Posted by Lazydog View Post
You could always stop and restart the firewall with the following with root privs;
[i]
/sbin/service iptables restart
thanks Lazydog, thats what I was looking for too. regards
callagga is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Free Magazines
Cisco News
Receive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business.
subscribe
Systems Management News, the newspaper for IT systems administration and data center managers!
Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field.
subscribe
The Enterprise Newsweekly
eWeek is the essential technology information source for builders of e-business.
subscribe
Oracle Magazine
Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company.
subscribe
Total Telecom
Total Telecom is "The Economist of the communications industry".
subscribe
More free magazines »



All times are GMT. The time now is 11:15 AM.




© 2000 - 2008 - All Rights Reserved - Property of  MAS Media

Content Relevant URLs by vBSEO 3.2.0