(Answer) (Category) NetMAXFAQ : (Category) Routing / Fire Wall / Proxy Cache :
I locked myself out of NetMAX with firewall rules. What can I do?
Applies to: NetMAX version 2.0 - 4.0x
address-suppressed

I locked myself out of NetMAX with firewall rules. What can I do?

  • If you have enabled a firewall rule such as, block all traffic or a rule blocking you from logging into your NetMAX interface, follow these guidelines.

    1. You first need to log into the command line of your NetMAX system as root. The easiest way to do this is to go to the actual system itself and login through the console as root user.

      You can also log into your system using telnet (if it is not blocked by firewall rules). Login to telnet with your administrative user then enter the command su root. You will be prompted for the root password.

      After entering the root password you will be at the command prompt, which will look like this:

      [root@netmax]#

    2. You now have the ability to change the firewall rules which have locked you out.

      To change these rules you need to run a command to clear out the rules.

      Please note, running this command will temporarly shutdown Network Address Translation and temporarly remove all firewall configuration. The firewall configuration will be restored when you perform a commit or reboot the system.

      The command is:

      ipchains -F

      The above command must be typed exactly as shown.

    3. You can now go into the NetMAX interface and change your firewall rules back to allow you access.

  • If you do not change your firewall rules and perform a commit or reboot the system, you will not be able to get to the NetMAX interface without going through the above steps to gain access once again.
  • If you are unable to log into your system from a telnet session try logging in using the console and going through step 2.

  • If you are unable to log in as root from the console follow the below steps:

    1. Reboot your NetMAX server.
    2. At the LILO prompt enter this command:
      linux single
    3. When you get to the bash prompt enter this command:
      rm /etc/rc.firewall
    4. Enter this command to reboot the server:
      reboot
    5. Once the server boots up you will be able to gain access to it using the web interface. Don't forget to remove the firewall rule that locked you out. If you don't remove this rule and do a commit or reboot the server again you will not be able to access the server without going through the above steps again.

address-suppressed
Previous: (Answer) CGIs won't work through my NetMAX proxy. What can I do?
Next: (Answer) My traffic rerouting isn't working what can I do?
This document is: http://www.netmax.org/cgi-bin/fom.cgi?file=412
[Search] [Appearance]
This is a Faq-O-Matic 2.721.
This FAQ administered by ...Cybernet Systems Corp.