Feature Request: Automatic iptables updates

This support forum board is for support questions relating to Nagios Log Server, our solution for managing and monitoring critical log data.
Locked
User avatar
eloyd
Cool Title Here
Posts: 2190
Joined: Thu Sep 27, 2012 9:14 am
Location: Rochester, NY
Contact:

Feature Request: Automatic iptables updates

Post by eloyd »

When adding an input type with a new port number, would love to see NLS automatically take care of updating /etc/sysconfig/iptables to open the port. Conversely, when removed from the input list, I'd love to see NLS automatically remove it from iptables.

I realize different places have different security needs, but since you're already opening 5544 and all the other pre-configured input ports, why not add others when they get created as well?
Image
Eric Loyd • http://everwatch.global • 844.240.EVER • @EricLoyd
I'm a Nagios Fanatic! • Join our public Nagios Discord Server!
User avatar
hsmith
Agent Smith
Posts: 3539
Joined: Thu Jul 30, 2015 11:09 am
Location: 127.0.0.1
Contact:

Re: Feature Request: Automatic iptables updates

Post by hsmith »

I've reached out to the developers for their input. I can see arguments on both sides for this one.
Former Nagios Employee.
me.
User avatar
eloyd
Cool Title Here
Posts: 2190
Joined: Thu Sep 27, 2012 9:14 am
Location: Rochester, NY
Contact:

Re: Feature Request: Automatic iptables updates

Post by eloyd »

Agreed. Which is why I bring up the fact that stock NLS install includes open ports for all pre-configured input types.
Image
Eric Loyd • http://everwatch.global • 844.240.EVER • @EricLoyd
I'm a Nagios Fanatic! • Join our public Nagios Discord Server!
User avatar
hsmith
Agent Smith
Posts: 3539
Joined: Thu Jul 30, 2015 11:09 am
Location: 127.0.0.1
Contact:

Re: Feature Request: Automatic iptables updates

Post by hsmith »

I didn't hear back from the developers. I'll submit a feature request.
Former Nagios Employee.
me.
User avatar
hsmith
Agent Smith
Posts: 3539
Joined: Thu Jul 30, 2015 11:09 am
Location: 127.0.0.1
Contact:

Re: Feature Request: Automatic iptables updates

Post by hsmith »

Feature request 8090 has been submitted.
Former Nagios Employee.
me.
User avatar
eloyd
Cool Title Here
Posts: 2190
Joined: Thu Sep 27, 2012 9:14 am
Location: Rochester, NY
Contact:

Re: Feature Request: Automatic iptables updates

Post by eloyd »

Thanks.
Image
Eric Loyd • http://everwatch.global • 844.240.EVER • @EricLoyd
I'm a Nagios Fanatic! • Join our public Nagios Discord Server!
User avatar
lmiltchev
Bugs find me
Posts: 13589
Joined: Mon May 23, 2011 12:15 pm

Re: Feature Request: Automatic iptables updates

Post by lmiltchev »

eloyd, let us know if it is ok to lock the thread. Thanks!
Be sure to check out our Knowledgebase for helpful articles and solutions!
User avatar
eloyd
Cool Title Here
Posts: 2190
Joined: Thu Sep 27, 2012 9:14 am
Location: Rochester, NY
Contact:

Re: Feature Request: Automatic iptables updates

Post by eloyd »

Yes.
Image
Eric Loyd • http://everwatch.global • 844.240.EVER • @EricLoyd
I'm a Nagios Fanatic! • Join our public Nagios Discord Server!
Locked