romand700
Regular Pleskian
Hello,
I disable firewalld and activate iptables:
# systemctl stop firewalld
# yum -y install iptables-services
# systemctl enable iptables
# systemctl enable ip6tables
# systemctl start iptables
# systemctl start ip6tables
Obviously now Plesk no work. I only need to enable ports below in /etc/sysconfig/iptables?
#20 ftp-data (TCP)
#21 ftp (TCP)
#22 ssh (TCP)
#25 smtp (TCP)
#53 dns (TCP and UDP)
#80 http (Web server and Plesk updater) (TCP)
#106 poppassd (for localhost only) (TCP)
#110 pop3 (TCP)
#113 auth (TCP)
#143 imap (TCP)
#443 https (TCP)
#465 smtps (TCP)
#587 mail message submission (TCP)
#990 ftps (TCP) (FTPS has to be configured manually)
#993 imaps (TCP)
#995 pop3s (TCP)
#3306 mysql (TCP)
#5224 (outgoing connections only) plesk-license-update (TCP)
#5432 postgres (TCP) - Linux Only
#8443 plesk-https (TCP)
#8447 autoinstaller (TCP)
#8880 plesk-http (TCP)
#9080 tomcat (TCP)
For exaple, I add in /etc/sysconfig/iptables:
-A INPUT -p tcp --dport 8443 -j ACCEPT
-A INPUT -p tcp --dport 21 -j ACCEPT
...
....
That's all or what I configure in addition to this? or there is a different way to follow?
Regards,
I disable firewalld and activate iptables:
# systemctl stop firewalld
# yum -y install iptables-services
# systemctl enable iptables
# systemctl enable ip6tables
# systemctl start iptables
# systemctl start ip6tables
Obviously now Plesk no work. I only need to enable ports below in /etc/sysconfig/iptables?
#20 ftp-data (TCP)
#21 ftp (TCP)
#22 ssh (TCP)
#25 smtp (TCP)
#53 dns (TCP and UDP)
#80 http (Web server and Plesk updater) (TCP)
#106 poppassd (for localhost only) (TCP)
#110 pop3 (TCP)
#113 auth (TCP)
#143 imap (TCP)
#443 https (TCP)
#465 smtps (TCP)
#587 mail message submission (TCP)
#990 ftps (TCP) (FTPS has to be configured manually)
#993 imaps (TCP)
#995 pop3s (TCP)
#3306 mysql (TCP)
#5224 (outgoing connections only) plesk-license-update (TCP)
#5432 postgres (TCP) - Linux Only
#8443 plesk-https (TCP)
#8447 autoinstaller (TCP)
#8880 plesk-http (TCP)
#9080 tomcat (TCP)
For exaple, I add in /etc/sysconfig/iptables:
-A INPUT -p tcp --dport 8443 -j ACCEPT
-A INPUT -p tcp --dport 21 -j ACCEPT
...
....
That's all or what I configure in addition to this? or there is a different way to follow?
Regards,
Last edited: