PDA

View Full Version : Virtuozzo Firewall Settings


airoid
04-17-2006, 05:24 AM
Does anyone know what the recommended settings on the new Virtuozzo version firewall? Should I just use the normal settings or not have it enabled at all?

EDIT: WOW!! I enabled the normal firewall thinking I could just disable it when I was through but there is no option to shut it off! It, by default, disabled FTP access, secure web access, and cPanel access isn't even an option (only plesk). I quickly changed the firewall setting to "Advanced firewall mode with default policy Accept" and this seemed to fix the problem.

sdjl
04-17-2006, 07:35 AM
Yeah, i couldn't find a way to turn it off after "playing" with it :D
Mine didn't disable access to any of those services by default though. It has them all as accept..

David

Hvu
04-24-2006, 03:41 AM
Hey guys i'm running mine with default policy to DROP, here are my rules

Input
http://mirrors.vividlayer.com/img/vzppfirewallinput.jpg

and Output
http://mirrors.vividlayer.com/img/vzppfirewalloutput.jpg

Need to add Cpanel Change my Directadmin rule to your port :)

zefefre
05-02-2006, 11:35 AM
wow thanks, this one really save me :)

Fred
05-02-2006, 10:08 PM
what is better... apf or the virtuozzo firewall ??

airoid
05-03-2006, 12:26 AM
I've got them both on.

charles
05-03-2006, 12:30 AM
I do not recommend running them both. Turn apf off if you want to use the one in the power panel.

I would argue that apf is better as it has bfd working with it as well.

charles

airoid
05-03-2006, 02:27 AM
How can I turn off the Virtuozzo one?

ozgreg
05-03-2006, 03:54 AM
Actually I would disable the port filtering in APF and just use the client deny rules that way you get the best of both worlds with Virtuozzo doing the heavy work with APF backing it up with deny rules for bad ip's...

It all does depend on resource loads, IE what takes the resource hit for the Virtuozzo firewall filtering

charles
05-03-2006, 10:39 AM
How can I turn off the Virtuozzo one?

You can't actually turn it off, but you can remove all rules and make the default be accept, and then restart apf.

tomfra
12-19-2006, 11:49 AM
To "Hvu" or someone else using the VZ firewall...

Can you share your settings? I have a problem with FTP access when limited to my IP only.

And now I can't even change the settings because the VPS is backing-up.

Tomas