Debugging (tracing?) iptables rules and chains
Robert Freiberger <[email protected]> Wed, 29 May 2019 20:31:51 -0700
| Newsgroups | gmane.org.user-groups.linux.svlug |
|---|---|
| Message-ID | <CAK5y5r7+p2M6TPWKNPwpac=LJTKCg-SiV6Cfibbm8bB_40yDMQ@mail.gmail.com> |
Hello everyone, I've been puzzled at work allowing access for SSH into one of our systems. The system in question is running OpenVZ, so there are a few containers/VM's running and one of the containers I need to access SSH from another external machine. The issue is I'm not entirely sure how the access is given since there are multiple chains and rules, plus some scripts that apply the rules through Puppet. Given that I'm not certain on iptables rules, is there a recommended way of reverse engineering the chains? Most of what I'm reading describes viewing the rules and following it step by step, but how does this work with /etc/hosts.allow/deny or when working with a nested system like containers or VM's? Thanks, Robert -- Robert Freiberger 510-936-1210 _______________________________________________ svlug mailing list [email protected] http://lists.svlug.org/lists/listinfo/svlug