Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Results 1 to 2 of 2
  1. #1
    Member
    Join Date
    Jun 2005
    Posts
    86

    Lightbulb APF firewall - slight problem...

    OK, I've installed APF firewall and now the correct iptables modules seem to have been installed for it. When I run apf --start, it's setting up iptables correctly... except for one thing.

    iptables -L is telling me that the default policy for the INPUT, FORWARD and OUTPUT chains is 'ACCEPT'. Now, I'm no iptables expert, but that seems pretty useless for a firewall to me. Doesn't that mean that any port I don't explicitly ban will be allowed, ie. a blacklisting policy?

    My ability to connect to port 2095 on my server, a port I hadn't put in the common ingress ports list in the APF config file, would seem to confirm this assumption.

    I want a whitelist-based firewall. Is there a way to get APF to do this? Preferably not having to manually access iptables myself? (I thought the point of APF was to hide the complexity of iptables from you!)

  2. #2
    Member
    Join Date
    Jan 2005
    Location
    /dev/null
    Posts
    770

    Default

    sounds like you have a problem with your apf config, i have multiple boxes running apf that only listen on the ports i specified.

Similar Threads & Tags
Similar threads

  1. APF Firewall instalation problem
    By kapOcha in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 05-22-2006, 02:50 PM
  2. APF firewall - slight problem...
    By jez9999 in forum cPanel and WHM Discussions
    Replies: 0
    Last Post: 05-13-2006, 07:47 AM
  3. APF firewall - slight problem...
    By jez9999 in forum cPanel and WHM Discussions
    Replies: 1
    Last Post: 04-30-2006, 03:48 PM
  4. Problem connnecting to nameserver after installing APF firewall
    By CamronFry in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 07-19-2005, 08:34 AM
  5. apf firewall/antidos upcp problem
    By Kasper.S in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 09-04-2004, 10:51 AM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube