Possible bug with ntpd and Iptables

From: Scot L. Harris (webid_at_cfl.rr.com)
Date: 08/31/04

  • Next message: phroxen_at_caramail.com: "Gaming on Linux FC2"
    To: Fedora List <fedora-list@redhat.com>
    Date: Tue, 31 Aug 2004 15:41:35 -0400
    
    

    I have noticed an anomaly with iptables and ntpd. During boot ntpd
    opens up some ports in the firewall.

    If you stop and start iptables these ports are no longer open. I
    believe this would mean that ntp would stop working as expected.

    I have not noticed any issues with the clock not tracking but it could
    be a problem particularly for sites running certain authentication
    packages which require time on the systems to be synchronized closely.

    It also seems that if ntp requires ports to be open then they should be
    configured in the normal /etc/sysconfig/iptables file.

    Should this be reported in bugzilla or is there a logical reason things
    are setup this way?

     

    -- 
    Scot L. Harris
    webid@cfl.rr.com
    Q:	What do Winnie the Pooh and John the Baptist have in common?
    A:	The same middle name. 
    -- 
    fedora-list mailing list
    fedora-list@redhat.com
    To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list
    

  • Next message: phroxen_at_caramail.com: "Gaming on Linux FC2"

    Relevant Pages

    • Re: Possible bug with ntpd and Iptables
      ... During boot ntpd ... > opens up some ports in the firewall. ... > If you stop and start iptables these ports are no longer open. ...
      (Fedora)
    • Re: allowing passive FTP from the outside
      ... Turning off iptables just opens all the ports. ... This may be possible with other ftp servers. ...
      (Fedora)
    • Re: when to start IPTables in RH9
      ... I would make a parallel directory for the partial IPTables ... It's just a basic script, ... that opens th FW for certain ports at specific moments: ...
      (comp.os.linux.security)
    • RE: redhat-list Digest, Vol 4, Issue 38
      ... Re: Iptables: port 22 open only for my IP ... Windows Services for Unix 3.5 ... It does absolutely nothing if you have a rampant application on your Windows box that opens a port to the outside world. ...
      (RedHat)
    • OT: Trend Micro WFBS beta starting soon
      ... getting pattern updates for laptops off the LAN. ... Trend firewall, even set to High, has inbound NetBIOS ports open. ... File and Printer Sharing" and when someone chooses it, it opens inbound ...
      (microsoft.public.windows.server.sbs)