Fixes for Firewall Rules Update

Questions about Magnia hacking and administration

Moderators: anoldman, Administrator

Fixes for Firewall Rules Update

Postby anoldman » Mon Mar 06, 2006 1:50 pm

As mentioned in the article on installing an updated port forwarding interface on the SG20, there is an issue with IPSEC VPN no longer working after the update.

Here is the fix:

File: /sa2/templates/etc/sysconfig/iptables.sh/10base

Line 120 looks like this:
Code: Select all
## Default ipsec device
IPSECIF="ipsec1"
Change "ipsec1" to "ipsec0" (that's a zero!) so it looks like this:
Code: Select all
## Default ipsec device
IPSECIF="ipsec0"
that should fix the problem.
Last edited by anoldman on Wed Mar 08, 2006 3:28 pm, edited 1 time in total.
User avatar
anoldman
Site Admin
Site Admin
 
Posts: 93
Joined: Thu Apr 03, 2003 7:00 pm
Location: Florida

Re: Fixes for Firewall Rules Update

Postby nwohio » Wed Mar 08, 2006 9:52 am

In your fix, I have followed the /sa2/templates/etc/sysconfig/iptables.sh path but it ends as a directory to more files. Which file in the directory do I have to open, or have I done something wrong here?


anoldman wrote:As mentioned in the article on installing an updated port forwarding interface on the SG20, there is an issue with IPSEC VPN no longer working after the update.

Here is the fix:

File: /sa2/templates/etc/sysconfig/iptables.sh

Line 120 looks like this:
Code: Select all
## Default ipsec device
IPSECIF="ipsec1"
Change "ipsec1" to "ipsec0" (that's a zero!) so it looks like this:
Code: Select all
## Default ipsec device
IPSECIF="ipsec0"
that should fix the problem.
Last edited by nwohio on Wed Mar 08, 2006 5:01 pm, edited 1 time in total.
User avatar
nwohio
Active
Active
 
Posts: 13
Joined: Thu Sep 08, 2005 7:00 pm

Postby anoldman » Wed Mar 08, 2006 3:27 pm

Sorry :oops: 10base

Edited above to correct missing filename :?
User avatar
anoldman
Site Admin
Site Admin
 
Posts: 93
Joined: Thu Apr 03, 2003 7:00 pm
Location: Florida

Postby nwohio » Wed Mar 08, 2006 4:33 pm

Thanks! I thought for sure I did something wrong when I upgraded the firewall settings.

anoldman wrote:Sorry :oops: 10base

Edited above to correct missing filename :?
User avatar
nwohio
Active
Active
 
Posts: 13
Joined: Thu Sep 08, 2005 7:00 pm

Postby anoldman » Wed Mar 08, 2006 10:39 pm

Very few people have two magnias at different sites and are using the IPSEC feature, so the error wasn't noticed/reported right away.
Let me know if you have any additional issues.
User avatar
anoldman
Site Admin
Site Admin
 
Posts: 93
Joined: Thu Apr 03, 2003 7:00 pm
Location: Florida


Return to Magnia SG20

Who is online

Users browsing this forum: No registered users and 5 guests

cron