LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 12-10-2007, 10:23 PM   #1
gfw
LQ Newbie
 
Registered: Dec 2007
Posts: 2

Rep: Reputation: 0
Exclamation WEBSERVER - cannot change firewall settings


Thank you ahead of time for your response!

After setting up Redhat to be used as Webserver Ive hit a wall regarding the firewall.

Some particulars:
port forwarded through port 80 for my webserver ip 192.168.1.102

After changing settings for 192.168.1.102 we're able to ping network users and the world wide web. As well as ping webserver from windows machines.

localhost/ || //192.168.1.102

result in nothing.
"Cannot Find Page"

I believe the firewall settings may be the issue. Type in command SETUP gives me the utility tool, i think its lokkit or something from other posts though its not clear.

If i attempt to change the utility settings they will not save.
I want to change the firewall settings to trust eth0 and I want to allow incoming from www(http) and possibly SSH.

If there is a conflict or inability to change using the firewall Utility maybe its possible in the iptables. could someone help me with changing the iptables.



Add'tl question:Is setting up my webserver in front of the router, by DMZ setting to control malicious abuse, a good idea? My brother says this will make it tough for hackers and such to get through the linux box moreso then through the linksys. What say yous?



Thank you supercalifragilistically
 
Old 12-11-2007, 03:11 AM   #2
Tinkster
Moderator
 
Registered: Apr 2002
Location: earth
Distribution: slackware by choice, others too :} ... android.
Posts: 23,067
Blog Entries: 11

Rep: Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928
Hi, and welcome to LQ!

When you refer to "the firewall", are you talking about some
appliance, the Linux servers iptables set-up or both?

I find the statement about the http://localhost not connecting
quite confusing I must say. Can you explain your net work set-up
in a bit more detail?

And where/how did you do the localhost bit?

As for the DMZ - again, explain the current layout, and the
other option you're thinking about. Generally, a DMZ won't
protect the machine in the DMZ any better than somewhere else
on the network, but it will protect other machines on the
net should the box in the DMZ be compromised to a better extent.



Cheers,
Tink

P.S.: I think this thread is better of in Linux-Server, and I've
moved it accordingly
 
Old 12-11-2007, 09:04 AM   #3
gfw
LQ Newbie
 
Registered: Dec 2007
Posts: 2

Original Poster
Rep: Reputation: 0
thanks

After login as root, type in Setup from the command prompt a utility activates. there are a list of tools such as network setup, firewall configuration, system tools, et cetera.

The firewall is a protective device which is enabled and set to high. There are 2 other settings medium and off. Within the configuration of the firewall are exceptions which will allow others access through the firewall, IF permitted.

Though all this appears to be editable by pressing the space bar to activate or deactivate a setting. When I close and re-enter the utility tool the settings are defaulted back to HIGH with no exceptions.
I need to have exceptions to allow for access to the webserver. I also want to check the option - trust eth0.

Are you familiar with the Utility Tools in Setup and with any reason why they are not editable settings. I've tried several methods on changing these but to no avail. I'm looking for help finding a file that can be hard coded to allow for these exceptions since the GUI does not work.

The 'iptable' file in the 'etc directory' appears to be a file where this can be done.

On the redhat website there is and explanation on the procedures for setting up the Webserver. After setup they request,from a remote computer, you type in the URL http://localhost or http://ip.add.re.ss and an Apache page will appear. However, I have no connection via internet explorer and no one can access my webserver. The strange thing is i can ping from remote computers on the network to the webserver and from the webserver to remote computers as well as from the webserver to the world wide web. I need to change these settings in the firewall to allow for trusted eth0 and http(www) access.
 
Old 12-11-2007, 11:02 AM   #4
Tinkster
Moderator
 
Registered: Apr 2002
Location: earth
Distribution: slackware by choice, others too :} ... android.
Posts: 23,067
Blog Entries: 11

Rep: Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928
I still don't know anything about your network setup and
the firewall that does the port redirection; anyway: to
see whether apache is up and running on the RH box it makes
no sense to connect to http://localhost on a remote
machine. Have you checked whether the apache is running
and serving up pages locally by pointing a browser from the
RH box at that URL?

I don't know the RH firewalling tool, so can't offer any
support with that, but would like to suggest that you tell
people here WHICH VERSION of RH you're using.


Cheers,
Tink
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Change MTU Settings on Endian Firewall VanTheLinuxNewbie Linux - Newbie 5 11-15-2006 04:54 AM
How can I change RH9 firewall settings after install? dsschanze Linux - Security 1 07-24-2006 10:15 PM
webserver behind firewall and squid ultraav Linux - Networking 6 06-17-2004 05:08 PM
Cant change firewall settings Noplis Linux - Newbie 4 02-27-2004 06:13 PM
where does it go? sshd firewall or webserver? piratebiter Linux - Security 4 09-14-2003 10:41 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 08:27 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration