Solved

error in ip tables configuration

Posted on 2009-04-11
7
709 Views
Last Modified: 2013-11-16
somehow I managed to mess up my ip-tables config. I get this error when I try to restart iptables,


[root@tktdgt ~]# service iptables restart
: command not foundbles-config: line 7:
: command not foundbles-config: line 14:
: command not foundbles-config: line 20:
: command not foundbles-config: line 26:
: command not foundbles-config: line 33:
Flushing firewall rules:                                   [  OK  ]
Setting chains to policy ACCEPT: mangle filter             [  OK  ]
[root@tktdgt ~]#

My file is below, it looks fine to me.


# Load additional iptables modules (nat helpers)
#   Default: -none-
# Space separated list of nat helpers (e.g. 'ip_nat_ftp ip_nat_irc'), which
# are loaded after the firewall rules are applied. Options for the helpers are
# stored in /etc/modules.conf.
IPTABLES_MODULES=""
 
# Unload modules on restart and stop
#   Value: yes|no,  default: yes
# This option has to be 'yes' to get to a sane state for a firewall
# restart or stop. Only set to 'no' if there are problems unloading netfilter
# modules.
IPTABLES_MODULES_UNLOAD="no"
 
# Save current firewall rules on stop.
#   Value: yes|no,  default: no
# Saves all firewall rules to /etc/sysconfig/iptables if firewall gets stopped
# (e.g. on system shutdown).
IPTABLES_SAVE_ON_STOP="no"
 
# Save current firewall rules on restart.
#   Value: yes|no,  default: no
# Saves all firewall rules to /etc/sysconfig/iptables if firewall gets
# restarted.
IPTABLES_SAVE_ON_RESTART="no"
 
# Save (and restore) rule and chain counter.
#   Value: yes|no,  default: no
# Save counters for rules and chains to /etc/sysconfig/iptables if
# 'service iptables save' is called or on stop or restart if SAVE_ON_STOP or
# SAVE_ON_RESTART is enabled.
IPTABLES_SAVE_COUNTER="no"
 
# Numeric status output
#   Value: yes|no,  default: yes
# Print IP addresses and port numbers in numeric format in the status output.
IPTABLES_STATUS_NUMERIC="yes"

Open in new window

0
Comment
Question by:JPERKS1985
7 Comments
 
LVL 78

Accepted Solution

by:
arnold earned 500 total points
ID: 24122672
Post the contents of /etc/sysconfig/iptables*
0
 
LVL 7

Expert Comment

by:Morne Lategan
ID: 24123080
Did you edit the file in dos? If so, run

dos2unix -p /path/to/file

It seems its complaining about all the blank lines
0
 
LVL 1

Author Comment

by:JPERKS1985
ID: 24123817
no more errors but it will not start




Setting chains to policy ACCEPT: mangle filter             [  OK  ]
[root@tktdgt ~]# service iptables start
Flushing firewall rules:                                   [  OK  ]
Setting chains to policy ACCEPT: mangle filter             [  OK  ]
[root@tktdgt ~]# service iptables status
Firewall is stopped.
[root@tktdgt ~]#
0
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
LVL 78

Expert Comment

by:arnold
ID: 24124004
run iptables -L
chkconfig --list iptables

What do you have for the above?
0
 
LVL 1

Author Comment

by:JPERKS1985
ID: 24124090
[root@tktdgt ~]# run iptables -L
-bash: run: command not found
[root@tktdgt ~]# chkconfig --list iptables
iptables        0:off   1:off   2:on    3:on    4:on    5:on    6:off
0
 
LVL 78

Expert Comment

by:arnold
ID: 24124353
iptables -L
0
 
LVL 30

Expert Comment

by:Kerem ERSOY
ID: 24568308
Remove run execute only iptables -L

If seems that you're running over RedHAT / CentOS . The default configuration is in /etc/sysconfig/iptables

If the code sniipet belongs to this file it is normal that you have nothing because your file does not contain any rules for firewall.

0

Featured Post

NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question