
Not being that good with Linux, I need some help with some component that is disturbing my peace: When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules. How do I kill the monster, or rather tell it to accept my rules?? Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux -- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

What distro? On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com> wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

CentOS release 5.7. It's a VPS and I have access to a web UI called parallels. I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!! On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com> wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

Try this: http://www.centos.org/docs/5/html/5.1/Deployment_Guide/s1-iptables-saving.ht... On 31 October 2011 18:52, Odhiambo Washington <odhiambo@gmail.com> wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com> wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa. On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com> wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."

Imagine I have RTFMed.... So I am sure as what I am doing is so documented. What they have not told me is WTF is flushing the rules on reboot:) On Mon, Oct 31, 2011 at 20:36, maina <dmaishe@gmail.com> wrote:
I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa.
On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com>wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

I'd suggest you do a recursive grep on all init scripts searching for iptables... something like grep iptables -r /etc/init.d should do. Maybe the VPS owners added something of their own.. I doubt you did the CentOs install. On Tue, Nov 1, 2011 at 3:08 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Imagine I have RTFMed.... So I am sure as what I am doing is so documented. What they have not told me is WTF is flushing the rules on reboot:)
On Mon, Oct 31, 2011 at 20:36, maina <dmaishe@gmail.com> wrote:
I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa.
On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com>wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Regards, Yonny ..... there are two survival skills we must always remember: Never mess with people who handle your food; and never, whenever possible, enrage the IT guy.

I am going to direct this matter to the VPS owners. Thanks everyone, for your time. On Tue, Nov 1, 2011 at 16:09, Yonny Mutai <yonnym@googlemail.com> wrote:
I'd suggest you do a recursive grep on all init scripts searching for iptables... something like grep iptables -r /etc/init.d should do. Maybe the VPS owners added something of their own.. I doubt you did the CentOs install.
On Tue, Nov 1, 2011 at 3:08 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Imagine I have RTFMed.... So I am sure as what I am doing is so documented. What they have not told me is WTF is flushing the rules on reboot:)
On Mon, Oct 31, 2011 at 20:36, maina <dmaishe@gmail.com> wrote:
I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa.
On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington <odhiambo@gmail.com
wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com>wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
--
Regards, Yonny
..... there are two survival skills we must always remember: Never mess with people who handle your food; and never, whenever possible, enrage the IT guy.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

@ Wash. Did you find a solution for the above issue? In my little experience with IPTables and CentOS is that you are not supposed to manually edit your conf' file You need to add the rules from the shell in this fashion... *iptables -A ..................................* and then save the rules. *service iptables save* and then restart the service. Regards, M. Mugo On Tue, Nov 1, 2011 at 4:13 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
I am going to direct this matter to the VPS owners.
Thanks everyone, for your time.
On Tue, Nov 1, 2011 at 16:09, Yonny Mutai <yonnym@googlemail.com> wrote:
I'd suggest you do a recursive grep on all init scripts searching for iptables... something like grep iptables -r /etc/init.d should do. Maybe the VPS owners added something of their own.. I doubt you did the CentOs install.
On Tue, Nov 1, 2011 at 3:08 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Imagine I have RTFMed.... So I am sure as what I am doing is so documented. What they have not told me is WTF is flushing the rules on reboot:)
On Mon, Oct 31, 2011 at 20:36, maina <dmaishe@gmail.com> wrote:
I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa.
On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington < odhiambo@gmail.com> wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com>wrote:
What distro?
On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com>wrote:
> Not being that good with Linux, I need some help with some component > that is disturbing my peace: > > When I modify iptables manually and reboot, some monster in the > system comes and replaces my manually added rules. > > How do I kill the monster, or rather tell it to accept my rules?? > > Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 > MSK 2010 x86_64 x86_64 x86_64 GNU/Linux > > > -- > Best regards, > Odhiambo WASHINGTON, > Nairobi,KE > +254733744121/+254722743223 > _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ > I can't hear you -- I'm using the scrambler. > Please consider the environment before printing this email. > > > _______________________________________________ > Skunkworks mailing list > Skunkworks@lists.my.co.ke > http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks > ------------ > Skunkworks Rules > http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 > ------------ > Other services @ http://my.co.ke >
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
--
Regards, Yonny
..... there are two survival skills we must always remember: Never mess with people who handle your food; and never, whenever possible, enrage the IT guy.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

@Mugo, I did not find the solution myself. I asked the VPS provider to find it and they did. What beats me is the fact that the VPS has something called Parallels, which one can use to modify the firewall rules, but using that did not work for me. Unfortunately, I am so used to the CLI that using web UIs to manage servers has never been something I am keen on. Thanks though for the information. I will play with this on a test machine in VMWare and see how it works. On Thu, Nov 3, 2011 at 11:17, m mugo <mugo2of3@gmail.com> wrote:
@ Wash.
Did you find a solution for the above issue?
In my little experience with IPTables and CentOS is that you are not supposed to manually edit your conf' file
You need to add the rules from the shell in this fashion...
*iptables -A ..................................*
and then save the rules.
*service iptables save*
and then restart the service.
Regards, M. Mugo
On Tue, Nov 1, 2011 at 4:13 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
I am going to direct this matter to the VPS owners.
Thanks everyone, for your time.
On Tue, Nov 1, 2011 at 16:09, Yonny Mutai <yonnym@googlemail.com> wrote:
I'd suggest you do a recursive grep on all init scripts searching for iptables... something like grep iptables -r /etc/init.d should do. Maybe the VPS owners added something of their own.. I doubt you did the CentOs install.
On Tue, Nov 1, 2011 at 3:08 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Imagine I have RTFMed.... So I am sure as what I am doing is so documented. What they have not told me is WTF is flushing the rules on reboot:)
On Mon, Oct 31, 2011 at 20:36, maina <dmaishe@gmail.com> wrote:
I dont think you are saving the said file correctly! Thts what happens when you edit and reboot without saving poa.
On Mon, Oct 31, 2011 at 6:52 PM, Odhiambo Washington < odhiambo@gmail.com> wrote:
CentOS release 5.7. It's a VPS and I have access to a web UI called parallels.
I edit /etc/sysconfig/iptables manually and I save the changes, restart iptables and the changes work! When I reboot, all changes are lost!!
On Mon, Oct 31, 2011 at 18:15, Simon Mbuthia <simon.mbuthia@gmail.com > wrote:
> What distro? > > On 31 October 2011 18:02, Odhiambo Washington <odhiambo@gmail.com>wrote: > >> Not being that good with Linux, I need some help with some >> component that is disturbing my peace: >> >> When I modify iptables manually and reboot, some monster in the >> system comes and replaces my manually added rules. >> >> How do I kill the monster, or rather tell it to accept my rules?? >> >> Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 >> 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux >> >> >> -- >> Best regards, >> Odhiambo WASHINGTON, >> Nairobi,KE >> +254733744121/+254722743223 >> _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ >> I can't hear you -- I'm using the scrambler. >> Please consider the environment before printing this email. >> >> >> _______________________________________________ >> Skunkworks mailing list >> Skunkworks@lists.my.co.ke >> http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks >> ------------ >> Skunkworks Rules >> http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 >> ------------ >> Other services @ http://my.co.ke >> > > > _______________________________________________ > Skunkworks mailing list > Skunkworks@lists.my.co.ke > http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks > ------------ > Skunkworks Rules > http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 > ------------ > Other services @ http://my.co.ke >
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- David Maina. P. O. Box 8310-00200, NAIROBI, KENYA.. Cell:+254-721-950073. Registered Linux User #407239. ---------------------------------------------------------------------- "By golly, I'm beginning to think Linux really *is* the best thing since sliced bread."
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
--
Regards, Yonny
..... there are two survival skills we must always remember: Never mess with people who handle your food; and never, whenever possible, enrage the IT guy.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

Wash, You not good in IPTABLES, our Father in heaven help us ... Kiania D On Mon, Oct 31, 2011 at 6:02 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- [Asentric Consulting Ltd] "The more you sweat in training, the less you bleed in war." - Navy SEAL INSTRUCTOR

@Wash, you can save your new rules in a script and let them be run with the others scheduled for startup, for instance by placing them in /etc/profile. This I would do if a *iptables -s* does not save my newly created (security) policies. Martin.

On 1 November 2011 09:08, Martin Chiteri <martin.chiteri@gmail.com> wrote: @Wash, you can save your new rules in a script and let them be run
with the others scheduled for startup, for instance by placing them in /etc/profile.
This I would do if a *iptables -s* does not save my newly created (security) policies.
Hey Wash, Am not a guru either but some pointers here; What you say is possible if you for example; - Something is flushing your iptables on boot <eg. some commands may be placed here /etc/rc.local> - You didnt save your iptables rules <you could test by restarting the iptables b4 you reboot - service iptables restart> - The iptables-config file is modified not to save on reboot </etc/sysconfig/iptables-config> You could also exec a simple command on CLI then <service iptables save>, then <reboot> - see if it saves. Wilson./ Martin.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke

On Tue, Nov 1, 2011 at 09:40, Thuo Wilson <lixton@gmail.com> wrote:
On 1 November 2011 09:08, Martin Chiteri <martin.chiteri@gmail.com> wrote:
@Wash, you can save your new rules in a script and let them be run
with the others scheduled for startup, for instance by placing them in /etc/profile.
This I would do if a *iptables -s* does not save my newly created (security) policies.
Hey Wash,
Am not a guru either but some pointers here;
What you say is possible if you for example;
- Something is flushing your iptables on boot <eg. some commands may be placed here /etc/rc.local>
- You didnt save your iptables rules <you could test by restarting the iptables b4 you reboot - service iptables restart>
- The iptables-config file is modified not to save on reboot </etc/sysconfig/iptables-config>
You could also exec a simple command on CLI then <service iptables save>, then <reboot> - see if it saves.
@Thou - something is flushing my iptables on boot. That is what I need to find out. I have RTFMs and I am very sure I am saving correctly. I am not competent with Linux security so this is rather baffling, yet I am not even so willing to learn that aspect of Linux. -- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.

I am competent with *BSDs IPFilter & PF - which I consider equally better:-) ....Our Father in heaven has nothing to do with this Kiania :-) On Mon, Oct 31, 2011 at 20:48, David Kiania | Asentric Consulting Ltd < kianiadee@gmail.com> wrote:
Wash,
You not good in IPTABLES, our Father in heaven help us ...
Kiania D
On Mon, Oct 31, 2011 at 6:02 PM, Odhiambo Washington <odhiambo@gmail.com>wrote:
Not being that good with Linux, I need some help with some component that is disturbing my peace:
When I modify iptables manually and reboot, some monster in the system comes and replaces my manually added rules.
How do I kill the monster, or rather tell it to accept my rules??
Linux test.linux.svr 2.6.18-028stab070.14 #1 SMP Thu Nov 18 16:04:02 MSK 2010 x86_64 x86_64 x86_64 GNU/Linux
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
--
[Asentric Consulting Ltd]
"The more you sweat in training, the less you bleed in war." - Navy SEAL INSTRUCTOR
_______________________________________________ Skunkworks mailing list Skunkworks@lists.my.co.ke http://lists.my.co.ke/cgi-bin/mailman/listinfo/skunkworks ------------ Skunkworks Rules http://my.co.ke/phpbb/viewtopic.php?f=24&t=94 ------------ Other services @ http://my.co.ke
-- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ I can't hear you -- I'm using the scrambler. Please consider the environment before printing this email.
participants (8)
-
David Kiania | Asentric Consulting Ltd
-
m mugo
-
maina
-
Martin Chiteri
-
Odhiambo Washington
-
Simon Mbuthia
-
Thuo Wilson
-
Yonny Mutai