Why should be mandatory?
Firewall can not store 'any' inside rule
Firewall can not store 'any' inside rule
in a firewall you typically allow only what is needed first and then the last rule you will forbid everything else. There are already some other posts inside here showing rules like that
Firewall can not store 'any' inside rule
Firewall can not store 'any' inside rule
in this post RoadWarriors managment it’s similar. What else should I do in case I can not use any?
Firewall can not store 'any' inside rule
I think you are trying to use the rule in local rules. Did you try to make the rule in rules?
There you can use “any”.
Openvpn Credential error
Dear Michael, thanks for your idea. I went to the location where our server is located.
The problem was not with openvpn. The rsync backup was not being finished by 13/04/2020 and the NAS driver is disconnected remaining the folders copied in the server. Then server is 0kb free space to handle the services.
I deleted those folders and restarted, the server is back to normal
Good day
Openvpn Credential error
Thanks for your answer. Could you please mark the topic as solved?
Have a good day too.
Coturn installation and connection on a separate server than nextcloud and riot
wow, thats wonderful news. Now maybe we can get tinkering to get it properly intergated into our nextcloud instance.
If anyone has already done it, let us know. Shoutout to @Andy_Wismer @mrmarkuz
Adding an element to the proxy whitelist at cockpit
@giacomo Do you have an idea?
Local email - root
Hi dear all, I would like to know how to show local email sent to admin (root) by system.
When I was using Sme server, I enabled webmail and used //serveraddress/horde to view those emails.
In Nethserver is there a possibilitya same as I have done in Sme server? Thanks
Adding an element to the proxy whitelist at cockpit
Press “Strg+F5” and look again. Does it still not change?
EDIT: F5 or Browser refresh seems to be enough.
Firewall can not store 'any' inside rule
Does it work if you create a TCP/UDP service object with port range 1-65535 and name it “customany” and use it for the last local rule?
Maybe a policy change could help too but I can’t find the “policies” button in new server manager…
EDIT: Found it in rules pages top right. It only appears when there are rules.
#
# 20policy_ipsec
#
$FW ivpn ACCEPT
loc ivpn ACCEPT
ivpn loc ACCEPT
ivpn $FW ACCEPT
#
# 20policy_openvpn
#
loc ovpn ACCEPT
ovpn loc ACCEPT
ovpn $FW ACCEPT
$FW ovpn ACCEPT
ovpn net ACCEPT
If the policy would reject ovpn to the firewall ($FW) then you just need to allow the services you like.
Adding an element to the proxy whitelist at cockpit
Thanks for your answer. If I click on save and Strg+F5 or only F5 the whole window reloads. After clicking on Edit again, the new entry is away again.
I’ve not written much information, sorry for that.
If installed squid and ufdbguard.
Of course these settings are at filter.
Local email - root
Hi,
you can set the mail address for the root user in the Web UI to another user such as admin or any other user.
Regards and Health…
Uwe
Local email - root
Yes, just install nethserver-roundcubemail and you will be able to access as root at http://<host<>/webmail
Adding an element to the proxy whitelist at cockpit
Sorry, I can’t reproduce.
Whitelist entries are saved as expected in Firefox and Chrome.
Are there errors in /var/log/messages
?
Did you install the latest updates? Do you use a custom squid template?
Adding an element to the proxy whitelist at cockpit
Here it works. I can change the whitelist. I’m using FF65 64bit. Browser problem?
Did you try another browser?
Local email - root
Giacomo, your solution is applied to my problema and it’s solved. Thanks very much. Grazie
Adding an element to the proxy whitelist at cockpit
Apr 17 16:23:03 groupware cockpit-bridge: No entry for terminal type "unknown";
Apr 17 16:23:03 groupware cockpit-bridge: using dumb terminal settings.
Apr 17 16:23:03 groupware cockpit-bridge: No entry for terminal type "unknown";
Apr 17 16:23:03 groupware cockpit-bridge: using dumb terminal settings.
Apr 17 16:23:32 groupware cockpit-bridge: No entry for terminal type "unknown";
Apr 17 16:23:32 groupware cockpit-bridge: using dumb terminal settings.
Apr 17 16:23:32 groupware cockpit-bridge: No entry for terminal type "unknown";
Apr 17 16:23:32 groupware cockpit-bridge: using dumb terminal settings.
Tried FF75 32bit and 64 bit
Edge and IE didn’t work with cockpit
Zammad ticketing/helpdesk on Nethserver available
I can reproduce the problem on a high load server.
Adding TimeoutStartSec=300
to the [service]
section of the systemd file /etc/systemd/system/multi-user.target.wants/elasticsearch.service
helped. Use systemctl daemon-reload
to apply immediately.
Elasticsearch takes about 3 minutes to start on that server and the default of 90 seconds is too less in this case.
I have same issue on that server with netdata but it does a restart (maybe a good method for ES too):
# restart netdata if it crashes
Restart=on-failure
RestartSec=30