well, by that i meant getting a 2nd NIC + a 2nd firewall.
then i can use the 2nd firewall with another public ip, and forward all its traffic to 192.168.123.10.
you're saying its better to have iptables alone installed, just on the server?
why not have a firewall as an extra measurement of security....lets say that someone somehow breaks into the firewall and gets past its rules/filters....well, guess what, now they have another thing to break into...
i don't friggin believe this.
took me 2 weeks to figure out ONE line of code that was causing this issue.
all downloads were being forced to be transferred at the speed of 5megs/sec.
i'm soooo dumb.
lol, i know what iptables is. also, infact, i'm using it on the firewall as well.
unless i misunderstood what you said...there is no way that i'm connecting my server to the world without the firewall in the middle.
LOL
after reading that over and over, i still don't understand what you meant.
also, i don't have a router....during this thread, my router was my firewall...thats why i was saying that my "router" can only push through 1 ip.
here my setup.
world > switch > firewall > server.
i don't know much about mail and stuff but i've been having the same issue and i've learned a few things within the past week or so..
do you have whm/cpanel installed?
if so, go under whm, Tweak Settings, mail and find where it says:
"Track the origin of messages sent though the mail server...
no big man, its all good.
i havn't told the story completely as it ACTUALLY is either because i thought that it would make it more confusing.
so here is the deal:
i have about 5 static ips but i'm only using one of them. the one that i'm using goes INTO a HARDWARE firewall, and then the...
well, they are both the exact same type of nic....so i highly doubt that THATS the problem.
besides, i'm not near the server right now so i wouldn't be able to try that.
HAHAHA...appreciate the help guys
here is what you asked for:
# Logging:
# The home of the dedicated SSL protocol logfile. Errors are
# additionally duplicated in the general error log file. Put
# this somewhere where it cannot be used for symlink attacks on
# a real server (i.e...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.