Ticket #934 (closed task: fixed)

Opened 10 years ago

Last modified 10 years ago

Enable iptables rules on all lsst cluster nodes (and stays enabled after reboots)

Reported by: mfreemon Owned by: ccribbs
Priority: critical Milestone:
Component: infrastructure Keywords:
Cc: mfreemon, mbutler, RayPlante Blocked By:
Blocking: Project: LSST
Version Number:
How to repeat:

not applicable

Description (last modified by mfreemon) (diff)


Change History

comment:1 Changed 10 years ago by DefaultCC Plugin

  • Cc mfreemon added

comment:2 Changed 10 years ago by mfreemon

  • Priority changed from normal to critical

comment:3 Changed 10 years ago by ccribbs

  • Status changed from new to closed
  • Resolution set to fixed
  • Description modified (diff)

comment:4 Changed 10 years ago by mfreemon

  • Description modified (diff)

From Chris on Oct20: All systems are setup for iptables to start on reboot.

comment:5 Changed 10 years ago by mfreemon

  • Status changed from closed to new
  • Resolution fixed deleted

I am re-opening this ticket as lsst7 is not set to start iptables.

[mfreemon@lsst7 ~]$ date
Tue Oct 20 19:46:54 CDT 2009
[mfreemon@lsst7 ~]$ /sbin/chkconfig --list|grep iptables
iptables        0:off   1:off   2:off   3:off   4:off   5:off   6:off

comment:6 Changed 10 years ago by ccribbs

IPtables is now working on startup on all servers.

comment:7 Changed 10 years ago by mfreemon

  • Cc mbutler, RayPlante added

Chris, I am seeing the following on lsst2 and lsst3:

[root@lsst2 ~]# date
Fri Nov  6 16:21:22 CST 2009
[root@lsst2 ~]# iptables -L
Chain INPUT (policy ACCEPT)
target     prot opt source               destination         

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination         

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination         
[root@lsst3 ~]# date
Fri Nov  6 16:22:19 CST 2009
[root@lsst3 ~]# iptables -L
Chain INPUT (policy ACCEPT)
target     prot opt source               destination         

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination         

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination  

comment:8 Changed 10 years ago by mfreemon

  • Status changed from new to closed
  • Resolution set to fixed
Note: See TracTickets for help on using tickets.