IMPORTANT
NOTE: This document is based on CentOS, RedHat Linux
7.3 and Enterprise. The concepts should be similar across operating
systems, but the commands will very likely be different.
Also, never assume the directory structures exist in your system
as written in the document. Never blindly follow security
instructions -- read, review, compare, apply as it fits your
system.
The following are popular firewalls to consider that make use of iptables:
We prefer Bastille for Linux because it also helps harden the operating
system; however, we've broken out most of the hardening that Bastille does
here, so you are free to
use another iptables-based system. See
Positive Software's documentation for what
ports need to be open for Parallels H-Sphere. Also, we've
found a
great
library of programs that works with iptables to help
speed administration time of blocking and unblocking ips and more.
You will most likely have to edit the programs to utilize
your firewall rules for the names you use for INPUT, OUTPUT, etc. in your
tables. |
IMPORTANT
NOTE: This document and all
linked document is being provided as a good will gesture to the
Parallels H-Sphere community and to others who may benefit from its use.
Dynamic Net, Inc. makes no representations implied or explicit
as to their value or warranty. Dynamic Net, Inc. will not be
held liable for any damage resulting in the application of the
steps and procedures noted. If you feel uncomfortable at
all about doing any of the steps, make a complete system backup
and hire a third party like
We Manage Servers
to do the work for you.
|
|