Go Back   Defender Hosting Forums > PowerVPS Virtual Private Servers > Linux VPS - Security and Tuning

Linux VPS - Security and Tuning Security and Tuning Discussion for Linux Virtual Private Servers based on Virtuozzo by SWsoft

Reply
 
Thread Tools Display Modes

  #1  
Old 12-23-2005, 12:13 PM
sdjl's Avatar
sdjl sdjl is offline
Senior Member
 
Join Date: Dec 2005
Location: London, UK.
Posts: 349
sdjl is on a distinguished road
Send a message via AIM to sdjl
Default APF status

Hello,

I don't have much experience (yet!) with APF and i've been looking through documents this afternoon and looking at all the settings, etc.

I have a couple of questions regarding APF.
1) How can i tell that APF is running? Is there a process i should be looking for?

2) I noticed this in the APF "status" log:

Dec 23 17:06:47 host apf(13575): firewall initalized
Dec 23 17:06:45 host apf(15778): unable to load iptables module (ip_tables), aborting.
Dec 23 17:06:44 host apf(13575): activating firewall

Is not being able to load the iptables module bad? If so, do you have any suggestions for getting the iptables module to load?

Thanks for any help. It all helps in me being a little more self sufficient with a VPS

David
Reply With Quote

  #2  
Old 12-23-2005, 12:36 PM
charles charles is offline
Senior Member
 
Join Date: May 2004
Location: Virginia
Posts: 1,327
charles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud of
Default

Hi David

Please email support if you continue to have problems with it. APF should work fine. You can run ps auxww | grep apf to see the process, or service apf status|stop|start|restart to control it. lsmod will show the modules loaded.

charles
Reply With Quote

  #3  
Old 12-23-2005, 12:57 PM
sdjl's Avatar
sdjl sdjl is offline
Senior Member
 
Join Date: Dec 2005
Location: London, UK.
Posts: 349
sdjl is on a distinguished road
Send a message via AIM to sdjl
Default

Hi Charles,

Thanks for the reply

This is all i get if i ps auxww | grep apf

root 780 0.0 0.0 1508 476 pts/0 S 17:53 0:00 grep apf

I did try that earlier today out of curiosity and the same came up.

I'll contact support as i'm pretty sure that means it's not running when it should be
I do also notice that it seems to be enabling demo mode every so often, even when i've modified the conf file to take it out of "devel" mode.

David
Reply With Quote

  #4  
Old 12-23-2005, 03:06 PM
charles charles is offline
Senior Member
 
Join Date: May 2004
Location: Virginia
Posts: 1,327
charles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud of
Default

David, Sergey has got you taken care of. We have some automated setup scripts that needed updating as variable names changed in the latest apf. The apf config needs SET_MONOKERN="1" to work on a virtuozzo vps.

ho ho ho
charles
Reply With Quote

  #5  
Old 12-23-2005, 09:35 PM
sdjl's Avatar
sdjl sdjl is offline
Senior Member
 
Join Date: Dec 2005
Location: London, UK.
Posts: 349
sdjl is on a distinguished road
Send a message via AIM to sdjl
Default

Ah yes, that's made it better
I did also notice that the config file has these two settings set to eth0 rather than the venet0 that is setup under WHM:

IFACE_IN="venet0"
IFACE_OUT="venet0"

I changed them which stopped an error occurring.

David
Reply With Quote

  #6  
Old 12-24-2005, 11:30 AM
charles charles is offline
Senior Member
 
Join Date: May 2004
Location: Virginia
Posts: 1,327
charles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud of
Default

Thanks David

Was this a default install by us, or did you reinstall apf? Either way, I'll make sure this is addressed.

charles
Reply With Quote

  #7  
Old 12-24-2005, 11:48 AM
sdjl's Avatar
sdjl sdjl is offline
Senior Member
 
Join Date: Dec 2005
Location: London, UK.
Posts: 349
sdjl is on a distinguished road
Send a message via AIM to sdjl
Default

I went to install it myself, but it prompted me that it was already installed.
So whether that changed any of the config files or not, i don't know

Worth looking at anyway just in case.

Merry Christmas!

David
Reply With Quote

  #8  
Old 12-24-2005, 11:50 AM
charles charles is offline
Senior Member
 
Join Date: May 2004
Location: Virginia
Posts: 1,327
charles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud ofcharles has much to be proud of
Default

Merry Christmas! Or should I say

Please accept with no obligation, implied or implicit, my best wishes for an environmentally conscious, socially responsible, low stress, non-addictive gender neutral celebration of the winter solstice holiday, practiced within the most enjoyable traditions of the religious persuasion of your choice, or secular practices of your choice, with respect for the religious/secular traditions of others, or their choice not to practice religious/secular traditions at all.

As well, please enjoy a fiscally successful, personally fulfilling and medically uncomplicated recognition of the onset of the generally accepted calendar year 2006, but not without due respect for the calendars of choice of other cultures whose contributions to society have helped make America great (not to imply that America is necessarily greater than any other country or is the only "America" in the western hemisphere), and without regard to the race, creed, color, age, physical ability, religious faith, choice of computer platform, or sexual preference of the wishee.

*****************

By accepting this greeting, you are accepting the following terms:

This greeting is subject to clarification or withdrawal. It is freely transferable with no alteration to the original greeting. It implies no promise by the wisher to actually implement any of the wishes for her/himself or others, and it is void where prohibited by law, and is revocable at the sole discretion of the wisher. This wish is warranted to perform as expected within the usual application of good tidings for a period of one year, or until the issuance of a subsequent holiday greeting, whichever comes first, and warranty is limited to replacement of this wish or issuance of a new wish at the sole discretion of the wisher.

No reindeer, elves or barns were injured during the making of this greeting.
Reply With Quote

  #9  
Old 12-24-2005, 08:41 PM
sdjl's Avatar
sdjl sdjl is offline
Senior Member
 
Join Date: Dec 2005
Location: London, UK.
Posts: 349
sdjl is on a distinguished road
Send a message via AIM to sdjl
Default

lol

David
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
APF; Partial IP's sdjl Linux VPS - General 5 07-13-2008 08:04 PM
APF firewall settings mbrando Linux VPS - Security and Tuning 0 05-07-2006 09:58 AM
question about APF btking Linux VPS - General 0 03-10-2006 09:08 PM
server status yeshoward Linux VPS - General 2 10-22-2005 03:31 PM
Mail delivery and Keeping the APF host deny rules clean mbrando Linux VPS - General 0 10-04-2005 10:26 PM



All times are GMT -4. The time now is 11:41 PM.


vBulletin skin developed by: eXtremepixels
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Copyright Defender Technologies Group, LLC 2006