Fedora :: Clicking Out All Services In Firewall ( But Not Disabling It )?
Feb 26, 2010
I was running NFS in my Fedora. I found that I could not mount exported directory in client machine (Fedora ) with firewall enable in NSF server. Even I tried by clicking out all services in firewall (but not disabling it), it did not work. To make it work, I had to disable firewall. Is there any way to do this without disabling firewall?
I'd like to have an easy way to configure firewall, e.g. eable/disable what mythtv needs, or enable/disable what mediatomb needs. Basically open/close a few tcp and/or udp ports for all interfaces (I have two), or just one of them.
Is there a way to add my own trusted services for the firewall?
Other recommended ways to do that? Or just write a simple shell script?
I have used many other distros and just recently started using the Debian based distro Ubuntu. I am used to disabling services using chkconfig. I read this article on how to disable services using
PHP Code: update-rc.d -f proftpd remove
to disable features but how does one list the services that are running via the CLI like with my CentOS box I run chkconfig --list |grep n and that will show me all that is running on all services so how does one do this with Debian or Ubuntu?
How do you enable/disable the autostart of services. For example let's say I know I'm not gonna use apache and mysql for a while and don't want it to autostart anymore how do I disable it ?
And then once it is needed again how do you enable the autostart again ?
I have a question about /etc/services file. If I open ports in firewall, do I need to alter /etc/services file in order for certain apps to work?
kpasswd 464/tcp # kpasswd kpasswd 464/udp # kpasswd # Theodore Ts'o <tytso&MIT.EDU> # 465 is illegal used by eMail Server smtps 465/tcp # eMail Server #urd 465/tcp # URL Rendesvous Directory for SSM igmpv3lite 465/udp # IGMP over UDP for SSM # Toerless Eckert <eckert&cisco.com> digital-vrc 466/tcp # digital-vrc digital-vrc 466/udp # digital-vrc
Above example shows if 465 tcp isn't altered, Postfix MTA fails to listen on 465 tcp port. What if there's a bigger span 3000:7000 TCP/UDP, is there a need to alter each line by hand?
So I want to get mount/umount option under right click services menu. I went to Dolphin -> Settings -> Configure Dolphin -> Services -> Download New Services and from there I installed KDE CDEmu Emulator and MountISO. But neither of them is showing up in actual context menu. Neither in Dolphin -> Settings -> Configure Dolphin -> Services for that matter. I tried to install them as normal user and as a root. I went to have a peak in /usr/share/kde4/services/ServiceMenus/ but they aren't there as well... It's just me or lots of things seems to be not quite working in 11.3?
I'm having a pretty annoying problem. I can't seem to disable clicking on my laptop's touchpad. I went into the Gnome mouse settings, but the Enable mouse clicks with touchpad option is checked and grayed out. I have also tried to edit my xorg.conf, but there is nothing in it! Lastly, I've tried to edit 10-synaptics.fdi file, but that didn't do much
I just got F12 installed on my laptop and so far it was a breeze! Thanks to leigh for the fantastic nvidia and compiz installation tips, and to bbfuller for getting the BroadCom wireless working.I do notice, however, that when I press the F button (KDE) there is about a 20-30 second pause before the window pops up. I see the same thing when I start a terminal window.
I just installed the new Fedora 11 and have used earlier versions in the past a few times before. I am trying to figure out if there is anyway to automatically allow root access to everything once an administrator logs in as admin. I am extremely tired of having to type in my password EVERY single time I want to do something. Especially having to use the terminal for something as simple as copying a file from one directory to another.
I replaced my gnome with openbox some time ago, some of the gnome utilities still boots at at the start and I love and use most of them. Still few of them are causing problems, how can I selectively disable from autostarting?Also which utility takes care of mouse speed? I keeps resetting my settings?PS; I did some research and fooled around with xinit files, tried to grep them out of the init stuff, no result...
it tried to test the autologin mechanism, now i have to decided to go back to normal login on fc14 under gnome, but the login screen doesn't appear any longer.The autologin was activated with accounts-login and disabled by removing the twolines below
I'm an inordinate amount of trouble getting F15 to run without NetworkManager. If I boot with the NetworkManager service enabled, my NIC presents as expected at /dev/eth0 (I'm using biosdevname=0). However, when I stop the NetworkManager service, /dev/eth0 disappears from the filesystem.If I boot without NetworkManager enabled, /dev/eth0 is never created. Reviewing dmesg, udev is loading an ethernet driver.
For most actions on my system now it seems that clicking doesn't get a response on the first click. It can take 2 - 4 clicks at times for the system to react. Although I work primarily in my browser (Google Chrome), it does happen outside as well. I am running Gnome as the window manager.
I am not sure if this is a bug or not: I have disabled updates in System/Preferences/Software Update Preferences (set to Never/Nothing/Never) and yet when there are updates I get the icon on the Gnome panel announcing bugs or security updates.The reason I have disabled updates is that I prefer to check for updates manually with Yum, also to prevent lock conflicts between manual Yum and PackageKit.
on FC15 is it possible to change (as compiz) the mouse top corner behaviour?I would like to obtain the full windows list moving the mouse on top right corner..exist any extension that allow the userelect specific corner or is it possible to tell him on xml file configuration?
although I've been a lurker for a long time and hope the wealth of experience on LinuxForums can help me solve an issue I've been pulling my hair out for the last week.I am undergoing PCI compliancy scans and have been able to solve all the issues indicated with the exception of one: SSL Server Supports Weak Encryption Vulnerabilityport over port 25. Now before I go over the list of solutions I've tried let me post my Postfix main.cf and master.cf:
I am running CentOS 5.4 with CUPS v1.3.7 and have a Brother printer (MFC-5895CW) that connects wirelessly to a SonicWall device. The SonicWall is hardwired to my PC. I have found that periodically, the printer queue will become disabled and the only way to re-enable it is to issue a cupsenable command.
I believe that queue only gets disabled if the wireless connection drops in the middle of a print job. I've tried dropping the wireless connection and then bringing it back up when no print jobs are active or pending and the queue is fine for the next print job that is sent when the connection is up.
I did a little research and found that my version of CUPS contains support for an ErrorPolicy setting in the printer.conf file that may prevent the print queue from being disabled. I'm hoping that if I change the default value from "stop-printer" to "retry-job" that this will prevent CUPS from disabling the print queue and requirring a cupsenable command to re-enable the queue.
I don't want to play around with scheduling cron jobs to enable the queue.
I suspect this is an initial configuration bug. All firewall logs seem to be going to all three files. That causes a lot of clutter in the log files, and makes it difficult to see whether there are any serious problems being logged.
I am learning to setup firewall in my home for that i have selected four system(sys1,sys2....sys4) for testing .I have configured sys2 to act as a firewall with two NIC. sys3 and sys4 are inside the firewall . sys1 is not connected to firewall for testing purpose.
the IP assignments are follows :
sys1 : ( fedora, not connected to firewall i am thinking, But i am not sure )
what happened is that sys1(not connected to firewall) can ssh to sys4(connected,inside firewall),since the rules are written not to ssh form sys1 to sys4..
then I came to know whatever the request I give, It directly goes as sys1 --> sys4. Not as sys1-----> sys2(firewall)---> sys4 .and the firewall is not filtering and processing anything for both inbound and outbound (i think it's my mistake some where). the requests are directly going inside without firewall.
First some specs: Fedora 13 (Goddard) 32-bit NVIDIA GeForce GTX 260
The DVI output on my card works just fine to my monitor, which is what I've been using. I installed no drivers; it just worked. However, now I need a duplicate screen to be given via the s-video output, but it doesn't work. Nothing is being given to the tv and nothing is being detected under monitors. From what I understand, this is because I need to install the appropriate Driver.
I downloaded my driver from the nvidia website, but it won't install. it tells me I need to disable nouveau.
I'm running a server using CentOS 5 x64 I want to disable access of groups to "bin" folder so they cannot execute commands. [info: actually because of a bug in cPanel (the control panel I installed) Perl will give access to all hosting users to execute commands.] so what i wanna do is to ban some groups on 'bin' folder, for example 'my_group1' and 'my_group2" cannot access bin but 'my_trusted_group' can access it.
I'm trying to build firewall on Debian with 'Firewall Builder'. But it won't let me compile and run unless one interface is set as management. There are two interfaces on my computer: 'eth0' and 'lo'
I don't want to be able to configure firewall remotely, so could I use 'lo' as 'management interface'?
Why some application has daemon and some others doesn't. I thought just network application has services like httpd, nfs, cups.... but I just found out that cron, gpm.. and other has it to. why other some other applications hasn't got daemon. Just want to know what sort of application has services.