Hello Daniel,

Iptables is needed in PacketFence for firewall and also routing.

If you turn off iptables, you will lose the filtering part but also any 
registration and isolation routing.

If you don’t have a registration and isolation network then you are fine.

You can do:

systemctl disable packetfence-iptables --now

systemctl mask packetfence-iptables

Thanks,

Ludovic Zammit
Product Support Engineer Principal Lead

Cell: +1.613.670.8432
Akamai Technologies - Inverse
145 Broadway
Cambridge, MA 02142
Connect with Us:         <https://community.akamai.com/>  
<http://blogs.akamai.com/>  <https://twitter.com/akamai>  
<http://www.facebook.com/AkamaiTechnologies>  
<http://www.linkedin.com/company/akamai-technologies>  
<http://www.youtube.com/user/akamaitechnologies?feature=results_main>

> On May 30, 2024, at 3:18 PM, Daniel Zook via PacketFence-users 
> <packetfence-users@lists.sourceforge.net> wrote:
> 
> I set up a 3-node cluster environment and everything is working as expected, 
> *EXCEPT* that when the IPTables service is running the cluster fails to 
> respond to DNS requests.  I've posted here and on the sub-reddit, but no one 
> has provided a solution, so preventing IPTables from running seems to be the 
> only way to work around this.  Unfortunately, I have yet to figure out how to 
> keep IPTables from starting automatically (either at boot, or after a period 
> of time after stopping it.)
> 
> Does anyone know how to keep IPTables from running?
> 
> Thanks.
> _______________________________________________
> PacketFence-users mailing list
> PacketFence-users@lists.sourceforge.net
> https://urldefense.com/v3/__https://lists.sourceforge.net/lists/listinfo/packetfence-users__;!!GjvTz_vk!RIIrpW6JYji7cVo82f3tLlSKSeL76-MGe4Cad5ZRegPzAzf0FizzGCmFwnJfdIlg1ONEFnZ4Vt4YDN3NxTpiRDTflbrDnHqVPCigWg$

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to