OpenVZ Forum


Home » General » Support » IRC
Re: IRC [message #16036 is a reply to message #16035] Sun, 19 August 2007 18:31 Go to previous messageGo to previous message
dowdle is currently offline  dowdle
Messages: 261
Registered: December 2005
Location: Bozeman, Montana
Senior Member
There are two basic ports settings:

1) Ports you define for the host node in the firewall script
2) Ports you define for the VPSes in the /etc/firewall.d/ files you create.

So, you are creating a firewall for the host node... and it can have what ports you want it to have open... AND you are creating separate firewalls for each VPS... and they can have just the ports you want them to have open.

So, if you enable port 22 on the hn, that only affects the host node. If you enable port 80 in a VPS, it only affects that VPS.

Getting back to your question, yes... the ports you allow through are the only ones that traffic will be allowed through on... so while a VPS user might bind a program/service to a particular port, unless it is allowed in the VPS' /etc/firewall.d/ file, it'll get dropped before the VPS ever sees it.


--
TYL, Scott Dowdle
Belgrade, Montana, USA
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: Strange performance issue
Next Topic: Running X server in VE
Goto Forum:
  


Current Time: Wed Sep 11 19:22:37 GMT 2024

Total time taken to generate the page: 0.05390 seconds