Proper management of iptables?

Bashi, Enils Enils.Bashi at FTIConsulting.com
Wed Mar 9 00:41:20 UTC 2011


OK I see. What you're doing is fine according to Fox (Redhat Enterprise Linux 5 Administration, p 501) . If you want to see what the upstream maintainers had in mind (pretty much the same thing), check out their manual:

http://docs.redhat.com/docs/en-US/Red_Hat_Enterprise_Linux/6/html/Security_Guide/sect-Security_Guide-IPTables-Saving_IPTables_Rules.html

Hope this helps.




-----Original Message-----
From: Dmitry Makovey [mailto:dmitry at athabascau.ca] 
Sent: Tuesday, March 08, 2011 4:54 PM
To: redhat-sysadmin-list at redhat.com
Cc: Bashi, Enils
Subject: Re: Proper management of iptables?

On Tuesday, March 08, 2011, Bashi, Enils wrote:
> If losing the rules is the issue, why not dump the rules to a file? :
> 
> Iptables-save > iptables.save
> 
> And if you need to restore them:
> 
> Iptables-restore < iptables.save
> Service iptables save
> Service iptables restart

well that part is covered by RCS. It was more of a question whether our techniques are properly alligned with expectations of upstream maintainers
(RedHat) of how the system is going to be used.

--
Dmitry Makovey
Web Systems Administrator
Athabasca University
(780) 675-6245




More information about the redhat-sysadmin-list mailing list