LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-02-2004, 10:44 AM   #1
aarto
LQ Newbie
 
Registered: Oct 2004
Posts: 2

Rep: Reputation: 0
Mandrake 10 - Port 25 keeps getting closed - by msec?


Hi all!

I recently installed Mandrake 10. I have since set security level to 4 (higher)
I have altered the iptables (using shorewall) in Webmin. I have opened ports 22, 25, 80, 110 and 443. However, port 25 always gets closed by some process.

When i see that port 25 gets closed (drops packets) i go to webmin and see that the shorewall is not "running".
If i select to start shorewall, port 25 is opened again but some 30 minutes later the port is, again, closed and Shorewall appears not to be "running"

(I know shorewall is not a process. I do not know what webmin means by it being "running" or "stopped", could it have to do with something in the netfilter module/iptables rules being reset/modified?)

I'm no master of Linux, just want to run my mail server (and yes, i have configured Postfix to not to act as open relay :-)

I suspect this has something to do with msec but i can not find anything in the configuration files that seems to be causing this. Maybe msec enforces certain set of firewall rules and checks these every 30-60 minutes?

Thankful for any help on the subject...

Had similar problem with tcpwrapper (hosts.allow/hosts.deny) Even though i deselected authoristaion by tcpwrapper in the "control panel" msec still kept adding ALL:ALL to hosts.deny. I don't give a toss about these files as i rely on the firewall to manage incoming connections fro internet and want to allow full connectivity on my LAN
I solved this by adding ALL:ALL in hosts.allow :-)
 
Old 10-02-2004, 02:31 PM   #2
aarto
LQ Newbie
 
Registered: Oct 2004
Posts: 2

Original Poster
Rep: Reputation: 0
Ahh.. found the reason at last..
I had installed firestarter package nad the iptables rules were being replaced by the firestarter configuration. Still don't know which process was doing this (and didn't find anything in cron) but removing firestarter solved the problem.. Now the rules created in shorewall are sticking, at last...
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
is the 25 port closed abd_bela Linux - Networking 5 08-18-2004 08:27 AM
MSEC Lvl 4 blocking port 80 -----> HELP PLZ!!! zegos Mandriva 0 04-19-2004 07:07 PM
port closed hotrodowner Linux - Networking 2 12-02-2002 05:06 AM
Mandrake - msec bkeating Linux - Distributions 1 08-10-2002 05:38 PM
firewall.rc.config says :"open port 8080" but nmap says port is closed saavik Linux - Security 2 02-14-2002 12:16 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:36 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration