[wellylug] Redhat ES3

Jamie Baddeley wellylug at vpc.co.nz
Thu Jan 20 09:31:43 NZDT 2005


On Thu, 2005-01-20 at 09:11 +1300, Pete Black wrote:
> Most likely, the script is /etc/sysconfig/iptables - although some 
> config directives are in /etc/sysconfig/iptables-config
> 
> the /etc/rc.d/init.d/iptables script sticks those two files together in 
> some less-than-intuitive way when invoked.

While we're at it, can someone remind me of the vagaries
of /etc/rc.d/init.d and /etc/init.d with RH, because ISTR some weirdness
there.

> 
> Generally, the 'redhat way' - as far as I understand it is to set up 
> iptables using whatever rules-generator you want, then issue the comand 
> 'service iptables save' which writes the current iptables ruleset to 
> /etc/sysconfig/iptables, which is subsequently loaded on boot.
> 
> If you haven't set up any firewalling, the /etc/sysconfig/iptables file 
> won't exist, so run '/sbin/service iptables save' to create it.
> 
> I don't think there is a built in graphical or console 'iptables wizard' 
> included in RH ES or Fedora, 

I'm coming in via ssh, so that's no issue.

> but I could just be too used to hacking 
> iptables scripts by hand to have ever needed to look for it.
> 
> 
> Hope that helps

Yep, it does, thanks for that. 





More information about the wellylug mailing list