Question about how to enable fiaif at boot.

Nikolay A. Fetisov email hidden
Tue Nov 29 08:41:34 CET 2005


On Tuesday 29 November 2005 07:23, Steven W. Orr wrote:
> ... But if that's true then what is the mechanism that makes
> this work if the iptables commands were already run *before*
> the current address is known?

Not only an address, but an interface too. On my system FIAIF 
preconfigures ppp0 and several tun interfaces even before the 
pppd and openvpn creates them.

> Fiaif starts on 8 and network starts on 10 so according to
> what you're saying, everything should be correct. The problem
> is that when the firewall is started (on 8) before the
> netowrk service, the firewall that I end up with (visible via
> iptables -L -n) is a null firewall. The chains were created
> but there's no hard firewall.

Is FIAIF really started at boot time?
Check output of 'chkconfig fiaif --list', may be it disabled on 
Your default runlevel. 

May be default FC4 firewall script (AFAIK init.d/iptables) 
starts after FIAIF and purge all configuration?

-- 
With best regards,
Nikolay Fetisov



More information about the fiaif mailing list