Virtuozzo How To Disable Firewall
May 16, 2007I enabled the firewall in the virtuozzo power panel and now I can't access WHM/CPanel.
How do I disable the firewall in VZPP?
I enabled the firewall in the virtuozzo power panel and now I can't access WHM/CPanel.
How do I disable the firewall in VZPP?
Is it okay to use the Virtuozzo firewall instead of CSF and or APF?
View 5 Replies View RelatedI entered Virtouzza, and sounded good to enable firewall, once i enable firewall, WHM/Cpanel was down.
and there isn't a button to disable it back.
I already posted this as a bug report and now wanted to inform other users.
Starting with Plesk 11.5, the file "/opt/psa/var/modules/firewall/firewall-emergency.sh" contains the following line:
Code:
rm -f /opt/psa/var/modules/firewall/active.flag
That line stems from updating
Code:
Preparing to replace psa-firewall 11.0.9-debian6.0.build110120608.16 (using .../psa-firewall_11.5.30-debian6.0.build115130819.13_amd64.deb) ...
Unpacking replacement psa-firewall ...
Now, when you stop the firewall, you cannot start it again, cause deleting the active.flag disables the firewall:
Code:
# ll /opt/psa/var/modules/firewall/active.flag
-rw-r--r-- 1 root root 0 2013-11-26 09:22 /opt/psa/var/modules/firewall/active.flag
# /etc/init.d/psa-firewall stop
psa-firewall: firewall successfully disabled
# ll /opt/psa/var/modules/firewall/active.flag
ls: cannot access /opt/psa/var/modules/firewall/active.flag: No such file or directory
# /etc/init.d/psa-firewall start
psa-firewall: service is disabled
You then have to manually "touch" the active.flag to be able to start the firewall again. A workaround is to remove the line:
Code:
sed -i 's:rm -f /opt/psa/var/modules/firewall/active.flag::' /opt/psa/var/modules/firewall/firewall-emergency.sh'
I really hope that Parallels fixes this asap, as normally you won't notice that the firewall is not active when every works fine (nothing is blocked) and Plesk still shows all the rules.
I am unable to disable or modify the firewall by using the plesk firewall extention. Plesk throw the two errors below:
Code:
Error: Could not disable firewall:
util_exec(.., 'proc_open') failed: file does not exist or is not executable: /opt/psa/admin/bin/modules/firewall/register_service
Code:
Error: Could not activate firewall configuration:
util_exec(.., 'proc_open') failed: file does not exist or is not executable: /opt/psa/admin/bin/modules/firewall/safeact
I checked the symlinks, they point to the same location: /opt/psa/admin/bin/modules/firewall/mod_wrapper
-r-s--x--- 1 root root 18896 Jun 6 10:37 mod_wrapper
I am using virtuozzo firewall to secure access.
I enter 58.27.175.211/255.255.255.0 for Source Address and Netmask for port 22.
But still I can connect using 58.181.103.217 or 58.27.151.120.
Second is it possible to enter two different ip address in source address?
Do you recommend a software firewall when behind a hardware firewall?
All of our servers are behind Cisco ASA 5505 firewalls which we rent from Liquidweb. All are being managed correctly and setup to there optimal levels. With hardware firewalls firmly in place, do you still recommend a software firewall such as APF or IPTables (we're talking linux); in our opinion we see it as an extra administration overhead. If this is however untrue, we will change out thinking.
I've found a dedicated server at a great price and plan to stick with it, my first ( already have 2 vps accounts ). I don't have the money for a hardware firewall. However, I do have a chance to renew a Kerio WinRoute Firewall license from way back.
Does anyone think this would be better than the default windows 2003 firewall?
I was just curious as to how virtuozzo manages the cpu usage. Do all VPS's just use as much cpu as they can at one time or is there a min and max limit?
View 6 Replies View RelatedI use virtuzoo for virtulization and run vps on them with cpanel installed, what option should I select
Conserve Memory at the expense of using more cpu/diskio. select it? or deselect?
We're currently using virtuozzo and have been but we are thinking of starting a Xen server as our techs have the technical expertise to manage a Xen server. I'm just wondering whether we would be better off with this or not, compared to Virtuozzo.
View 14 Replies View RelatedI've noticed a lot of the recommended VPS' are using Virtuozzo (e.g. KickAssVPS and WiredTree). Can anyone recommend good Windows VPS that utilize other software (ESX, Xen, Hyper-V)?
View 14 Replies View RelatedI installed Apf on Virtuozzo VE, which went well until I enabled it. I could not access Plesk installed on the machine, then I realized it was listening to port 8880 from the Service VE as well as 8443. Enabling 8880 in the common ports solved the problem, but I only want it blocked for everything BUT the Service VE.
I looked in the manual and the section that discusses adding custom rules for aliases only has a header and does not have any description.
Anyone know how to block port 8880 to the world but allow 8880 to a particular IP?
We are having an issue when trying to cache Fedora Core 10.
Code:
vzpkg create cache fedora-core-10-x86_64
Creation OS template cache for fedora-core-10-x86_64 template
Error: Python directory not found in /vz/pkgenv/rpm46x64
Error: Can't find environment directory /vz/pkgenv/rpm46x64: No such file or directory
The only recent changes that have been made is the Hostname. Before making this change, I was caching OS templates like it was christmas.
Which one do you prefer more and why?
Virtuozzo is very expensive while OpenVZ is free and it is somehow another Virtuozzo, but made simpler?
How can I tell which version of virtuozzo my host is running?
I have the VZPP, is there any way to check?
Has anyone migrated a windows vps from Virtuozzo to Xen before? How?
View 5 Replies View RelatedCan someone point me to the a good thread where these two options are compared? Or can we start on here?
I am thinking about it from a VPS host perspective.
I'm looking for a Windows host using anything but Virtuozzo. Any recommendations?
View 6 Replies View RelatedI've read that Virtuozzo 4.0 supported ipv6. I'm having problems finding anything to help setup the node for ipv6. I can't anything on the web except for some people talking about how to disable ipv6. So I was just wondering if anyone else has seen anything.
Edit: I don't think I posted in the correct section. Opps. Could a moderator move this to the right section?
I have an main server which has ssh configured that it connects to main vz server without password.
How to connect to all vz servers and lets say do command cat /etc/resolv.conf and send result to my email address?
I believe it should be something like this:
ssh server1;vzlist ..;vzenter 1$,2$;cat /etc/resolv.conf | mail bla@blah.com....;ssh server2;vzlist ..;vzeneter... and so on so forth.
I am trying many softwares for Windows Virtualization at the moment just for curious After using VMWare for 2-3 weeks I decided to try winVZ too.
But SwSoft Virtuozzo gives me this error on w2k3 Ent. 64Bit. What to do?
ERROR: {VZSRV} Virtuozzo API function call 'VZVolumeMount' failed openssh.efd
ERROR: {VZSRVAPI} Cannot install template openssh
Template(s) openssh,msde is(are) not installed.
Virtuozzo Prices?
Hello, I'm interested in Virtuozzo VPS containers, but I can't find the price of the software at Parallels site! Can anyone tell me whats the price?
I got a Virtuozzo VPS couple a days ago and I am having some problems with it. I can't get a hold of the host because he/she is "migrating" company website at the moment.
VPS OS - Ubuntu 8.04 32-bit
(Initially was 64-bit but I can't even get SSH to work. The host reloaded with 32-bit.)
Initially I was getting some permission problem on /dev/null for regular users. I fixed that with following and stick it in /etc/rc.local
chmod go+rw /dev/null
Now I can't get screen to work. It said something about "No More PTYs.".
$ ls -l /dev/tty*
crw-rw-rw- 1 root tty 5, 0 2009-04-14 14:55 /dev/tty
crw-rw-rw- 1 root tty 4, 0 2009-04-14 14:55 /dev/tty0
crw-rw-rw- 1 root tty 4, 1 2009-04-14 14:55 /dev/tty1
crw-rw-rw- 1 root tty 4, 2 2009-04-14 14:55 /dev/tty2
crw-rw-rw- 1 root tty 4, 3 2009-04-14 14:55 /dev/tty3
crw-rw-rw- 1 root tty 4, 4 2009-04-14 14:55 /dev/tty4
crw-rw-rw- 1 root tty 4, 5 2009-04-14 14:55 /dev/tty5
crw-rw-rw- 1 root tty 4, 6 2009-04-14 14:55 /dev/tty6
crw-rw-rw- 1 root tty 4, 7 2009-04-14 14:55 /dev/tty7
crw-rw-rw- 1 root tty 4, 8 2009-04-14 14:55 /dev/tty8
crw-rw-rw- 1 root tty 4, 9 2009-04-14 14:55 /dev/tty9
(I have "chmod go+rw /dev/tty*" in /etc/rc.local too.)
What can I do or what can I have the host do? I rely heavily on screen for all admin works and I need it to be working. Thanks for your thoughts!
Has the VZ bug where "doing a Windows Update on a node applies it to the whole server and then reboots the node" been fixed yet. We offer Linux VPS using VZ and was going to use it for Windows too but when I heard that I put the plan on hold.
View 1 Replies View Relatedwhich one would you recommend?
because Virtuozzo is charged, i think it may more easy to manage for admin and user,
xen has it's own feature than Virtuozzo,but i feel hypervm is not very friendly to use ( my personal feeling)
We have a client on a VPS (Virtuozzo) that is failing PCI Compliance through McAfee as the port for the "power panel" in Viruozzo uses week SSL encryption.
Since we can't block the port (as users need to be able to access it) does anyone know how we can possibly upgrade that or change things so that it will pass compliance?
All other ports on the server are fine, but the port 4643 keeps failing under the ScanAlert scans:
Low Strength Ciphers (< 56-bit key)
SSLv2
EXP-RC2-CBC-MD5 Kx=RSA(512) Au=RSA Enc=RC2(40) Mac=MD5 export
EXP-RC4-MD5 Kx=RSA(512) Au=RSA Enc=RC4(40) Mac=MD5 export
SSLv3
EXP-EDH-RSA-DES-CBC-SHA Kx=DH(512) Au=RSA Enc=DES(40) Mac=SHA1 export
EXP-DES-CBC-SHA Kx=RSA(512) Au=RSA Enc=DES(40) Mac=SHA1 export
EXP-RC2-CBC-MD5 Kx=RSA(512) Au=RSA Enc=RC2(40) Mac=MD5 export
EXP-RC4-MD5 Kx=RSA(512) Au=RSA Enc=RC4(40) Mac=MD5 export
TLSv1
EXP-EDH-RSA-DES-CBC-SHA Kx=DH(512) Au=RSA Enc=DES(40) Mac=SHA1 export
EXP-DES-CBC-SHA Kx=RSA(512) Au=RSA Enc=DES(40) Mac=SHA1 export
EXP-RC2-CBC-MD5 Kx=RSA(512) Au=RSA Enc=RC2(40) Mac=MD5 export
EXP-RC4-MD5 Kx=RSA(512) Au=RSA Enc=RC4(40) Mac=MD5 export
Medium Strength Ciphers (>= 56-bit and < 112-bit key)
SSLv2
DES-CBC-MD5 Kx=RSA Au=RSA Enc=DES(56) Mac=MD5
RC4-64-MD5 Kx=RSA Au=RSA Enc=RC4(64) Mac=MD5
SSLv3
EDH-RSA-DES-CBC-SHA Kx=DH Au=RSA Enc=DES(56) Mac=SHA1
DES-CBC-SHA Kx=RSA Au=RSA Enc=DES(56) Mac=SHA1
TLSv1
EDH-RSA-DES-CBC-SHA Kx=DH Au=RSA Enc=DES(56) Mac=SHA1
DES-CBC-SHA Kx=RSA Au=RSA Enc=DES(56) Mac=SHA1
Anyone have any suggestions on how we can resolve this issue for the client?
Does anyone know the basic information for the Virtuozzo API? We are working with Matt from WHMCS to create a custom module for Virtuozzo to auto provision VPS's however the API docs we submitted were not sufficient as there were no clear "functions".
View 3 Replies View RelatedI would like to know which clients would prefer Virtuozzo over HyperVM. Lets say there is a company offering Virtuozzo on there servers. However, there is another company offering HyperVM for a cheaper price. Neither companies are overselling. Would you be willing to pay the extra money for Virtuozzo? Or would you be happy with OpenVZ and HyperVM.
View 13 Replies View RelatedDoes any dedicated server provider give a Virtuozzo license with unlimited VEs? I've noticed that most of them give 3, 10, or max. 100. Do you have any idea why wouldn't they give a license for unlimited VEs and why are they restricting the number of VEs that we can create on a server since, as far as I've understood, Viruozzo provides license considering the CPU no.s, but not the number of VEs.
View 5 Replies View RelatedI would like to know which one is better for running java application in term of performance or stability.
16Gb RAM server
15 clients on Virtuozzo or Xen.
1Gb RAM each client.