Contact Us

support@onapp.com

U.S: (+1) 888-876-8666

UK: +44 (0) 203-318-5364

Need other protocols for firewall options..

Completed

Comments

7 comments

  • Avatar
    Stuart Haresnape

    ICMP is on it's way in OnApp 3.0 and hopefully not too long to open it up for the other protocols. 

    0
    Comment actions Permalink
  • Avatar
    *umServiceDesk

    It would be best to "just" define new protocols with their protocol numbers.

    For most protocols defining ports should be disabled though -- exceptions being UDP, TCP and SCTP.

    0
    Comment actions Permalink
  • Avatar
    Stuart Haresnape

    Hey Mario/guys

    Agree with that. This has been on our to do list for a while - just a case of trying to find the time to fit it in!

    Hope you're well and business is good.

    Stu

    0
    Comment actions Permalink
  • Avatar
    Trent Lloyd

    Severely missing here is ICMP-IPv6.  Setting ICMP (protocol 1) for IPv6 does nothing which is what the interface does at the moment.

    Without this you cannot allow neighbour solicitation which breaks IPv6 entirely if you enable the firewall and set a default DROP policy.

    0
    Comment actions Permalink
  • Avatar
    Stuart Haresnape

    Hi - this is still near the top of my list so hopefully will be soon. Not 3.1 btw

    0
    Comment actions Permalink
  • Avatar
    Angel Palacios

    OnApp v3.2.1 was released not long ago but still....

    OnApp’s FirewallRules for Cloud VMs is just a simple implementation/mapping of “iptables & ip6tables” rules in Linux KVM HVs; Besides “TCP, UDP, ICMP” protocols, Linux “iptables” supports all protocols listed in /etc/protocols file (around 22 different protocols). OnApp should enhance its “Firewall Rules” page to allow users select “Protocols” besides “TCP, UDP, ICMP”; 

    0
    Comment actions Permalink
  • Avatar
    Craigue Hyland

    Also supported should be log files of firewall activity so customers and admins can get an idea of what traffic is hitting the VMs

    0
    Comment actions Permalink

Please sign in to leave a comment.