|
testall
|
 |
« Reply #15 on: June 06, 2007, 04:22:48 PM » |
|
My CSF configuration file. Guaranteed to work with Plesk.
please rename it to csf.conf
Hi, Thanks for you detailed posts. Are you using VPS or dedicated server? I tried to install APF, but it failed because of accessing ETH0. You are welcome. I am using VPS and for network card setting on vps should be "venet0" other than eth0 I have changed the "venet0", but still got iptables error. did you do other special setups? thanks. 
|
|
|
|
|
Logged
|
|
|
|
|
vivalite
|
 |
« Reply #16 on: June 06, 2007, 04:31:40 PM » |
|
Hi testall,
First of all, please do not run APF and CSF simultaneously. As for the error are you getting, please contact the support and ask them to check that all iptables modules required by CSF are enabled for your VPS.
I have called the support number, i was told to chat with https://dedicated@lunarpages.com/in the online chat, I was told "enable iptables" can not be done in VPS, and i said somebody already did it in VPS, finally i was told to email the request and will get response in 30 mintues. now half day passed, i havn't got any response. Humm…. Please try your Plesk Control Panel ( http://your site:8443/) -> Virtuozzo -> Firewall. See if there are any options to enable the firewall.
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #17 on: June 06, 2007, 05:00:05 PM » |
|
Hi testall,
First of all, please do not run APF and CSF simultaneously. As for the error are you getting, please contact the support and ask them to check that all iptables modules required by CSF are enabled for your VPS.
I have called the support number, i was told to chat with https://dedicated@lunarpages.com/in the online chat, I was told "enable iptables" can not be done in VPS, and i said somebody already did it in VPS, finally i was told to email the request and will get response in 30 mintues. now half day passed, i havn't got any response. Humm…. Please try your Plesk Control Panel ( http://your site:8443/) -> Virtuozzo -> Firewall. See if there are any options to enable the firewall. I got 3 options, which one to enable ? is this help to install CSF? Select firewall modeNormal firewall mode Advanced firewall mode with default policy Accept Advanced firewall mode with default policy Drop
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #18 on: June 06, 2007, 09:40:20 PM » |
|
Humm…. Please try your Plesk Control Panel ( http://your site:8443/) -> Virtuozzo -> Firewall. See if there are any options to enable the firewall. I guess you misunderstand my question. I want to find a way to setup CSF in my VPS, not to enable Plesk's firewall. they are not the same thing. 
|
|
|
|
|
Logged
|
|
|
|
|
perestrelka
|
 |
« Reply #19 on: June 07, 2007, 12:44:27 AM » |
|
Hi testall,
Were you replied on the ticket you opened? If not, can you please PM me with the ticket reference number.
Are you still receiving the same error after you defined the network interface as venet0 in CSF config?
|
|
|
|
|
Logged
|
Kind Regards, Vlad Artamonov
|
|
|
|
vivalite
|
 |
« Reply #20 on: June 07, 2007, 01:22:10 AM » |
|
Humm…. Please try your Plesk Control Panel ( http://your site:8443/) -> Virtuozzo -> Firewall. See if there are any options to enable the firewall. I guess you misunderstand my question. I want to find a way to setup CSF in my VPS, not to enable Plesk's firewall. they are not the same thing.  Well, actually I found out myself that the Plesk firewall is just a nicer wrapper of common Linux iptables service. By enable Plesk firewall in plesk control panel is equal to enable iptables services. If you don’t bother go in to Plesk panel, you can just type ntsysv in your SSH terminal, then check iptables, save, reboot and then you should have iptables enabled or say Linux firewall enabled.
|
|
|
|
« Last Edit: June 07, 2007, 01:39:54 AM by vivalite »
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #21 on: June 07, 2007, 09:10:59 AM » |
|
Hi testall,
Were you replied on the ticket you opened? If not, can you please PM me with the ticket reference number.
Are you still receiving the same error after you defined the network interface as venet0 in CSF config?
my ticket number: 9299-ETYA-2437 yes, i still get the same error after define "vent0". also i tried enable fireall in Pleask/Virtuozzo, no luck. I also checked ntsysv, the iptables is enabled in startup. no luck. does it mean my VPS original settings is differ than other people's VPS ? without this firewall setup ready, i can not move further. 
|
|
|
|
|
Logged
|
|
|
|
|
vivalite
|
 |
« Reply #22 on: June 07, 2007, 03:03:48 PM » |
|
venet0, not vent0
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #23 on: June 07, 2007, 03:05:03 PM » |
|
venet0, not vent0
sorry, i typied wrong in post, but i used "venet0" in config file.
|
|
|
|
|
Logged
|
|
|
|
|
vivalite
|
 |
« Reply #24 on: June 07, 2007, 07:41:40 PM » |
|
OK so you have iptables running in your VPS now. Run "csf -x" then "csf -e" see what error message come out this time.
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #25 on: June 08, 2007, 09:21:08 AM » |
|
OK so you have iptables running in your VPS now. Run "csf -x" then "csf -e" see what error message come out this time.
finally i think it works, no error message anymore, lunarpages support must have done something for me. thanks. thanks vivalite. but i have a problem to receive alert email, in the lfd.log, it said it has send the email, but i could not find the email. 
|
|
|
|
|
Logged
|
|
|
|
|
vivalite
|
 |
« Reply #26 on: June 08, 2007, 12:55:34 PM » |
|
OK so you have iptables running in your VPS now. Run "csf -x" then "csf -e" see what error message come out this time.
finally i think it works, no error message anymore, lunarpages support must have done something for me. thanks. thanks vivalite. but i have a problem to receive alert email, in the lfd.log, it said it has send the email, but i could not find the email.  To make the alert email working I 1st set up a forward email account for me in Plesk, for example systemmailaccount@example.com, then I go to /etc/csf/ find and modified every .txt files as follow: From: root To: systemmailaccount@example.com<......> Restart CSF. Next time you should receive alert mails from ' systemmailaccount@example.com' Someone told me once I can create a .forward file with my email address for root account which supposed to do the same emailing thing. You can try that as well and see which one work best for you.
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #27 on: June 08, 2007, 02:14:35 PM » |
|
Yes, i have looked at the CSF soruce code, it use "sendmail -F root -t" to send mail to root.
I think the problem is my system root account probaberly may not setup to work with qmail yet. so qmail don't know how to deliver the mail with receiver called "root".
|
|
|
|
|
Logged
|
|
|
|
|
testall
|
 |
« Reply #28 on: June 08, 2007, 04:39:41 PM » |
|
spend another couple of hours, and finally get it work .  here is how i did it, maybe can help other people solve same issue: ### root can not receive email ### first thing i tried is to set forward at /var/qmail/alias/.qmail-root, no luck, it seems qmail doesn't look at it. then i read the mail log: /usr/local/psa/var/log/maillog it saids it can not find vps16.mydomain.com. so i changed the full hostname to "mydomain.com" in Plesk/Server/Server preferences. now this time, the mail log complains: " This_address_no_longer_accepts_mail", so i add an alias " root@mydomain.com" in plesk under a real web mail user and setup the forward. then it works.
|
|
|
|
|
Logged
|
|
|
|
|