Giter Site home page Giter Site logo

No success about utmfw HOT 8 CLOSED

sonertari avatar sonertari commented on May 20, 2024
No success

from utmfw.

Comments (8)

sonertari avatar sonertari commented on May 20, 2024

It seems like you did not configure an internal interface or the IP address of it properly. Please see the InstallationGuide.txt at the root of the iso file: "Make sure you configure two network interfaces. You will be asked to choose internal and external interfaces later on."

The error messages on your screenshots point to that issue, but I need to fix the final message which says the installation was completed successfully (it wasn't).

from utmfw.

bob-u avatar bob-u commented on May 20, 2024

It's got to be something else then not configuring interfaces.
If you look at the second screenshot you can see two interfaces configured:
em0 that is WAN interface, DHCP enabled, not connected
vio0 that is LAN interface which acquired IP via DHCP, connected

There was another issue, unrelated to the interfaces, where I could not login using console and I tried multiple installations. On one occasion I could ssh to it and login as root. When I tried to change password for user/utmfw/admin accounts that I used during setup - password was being rejected due to low complexity (something that install script did not do). However, even after changing the password for above mentioned accounts, when I tried to login via console (web was not available) I could login, got a welcome sentence in Turkish and then system logged me out. Following that, I tried to install with complex password but it did not get the system up and running and login through console still was not working. So it seems, I have multiple issues happening at the same time.

from utmfw.

sonertari avatar sonertari commented on May 20, 2024

The LAN interface should have a static IP address assigned to it during installation, DHCP will not work there. Set a static IP address to the internal interface. (Also I suggest that it should be UTMFW who assigns IP addresses over DHCP on the local network, but that's optional.)

Passwords of UTMFW users, admin, user, and utmfw are double encrypted. Please first do what I said above, then log in to the web UI, go to the System>WUI page, and see the help box next to the User-Password boxes. The root password is not double encrypted.

from utmfw.

sonertari avatar sonertari commented on May 20, 2024

General notes about users:

  • root is the only system user as usual. admin and user users are UI users. utmfw is a network user.
  • The only user you can log in to the system is root. The root password is a regular password, not double encrypted. But you are advised not to enable ssh login for the root user.
  • The admin and user users cannot drop to a shell. Their login shell is an sh.php script. They don't even have a home folder. Their passwords are double encrypted.
  • The network user utmfw is similar too, but its login shell is whois. Its password is double encrypted.

Most of these is for security purposes.

from utmfw.

bob-u avatar bob-u commented on May 20, 2024

Thanks for the info. I made it to work by assigning two static IP addresses to both interfaces (also used the latest ISO). I believe the issue was with IDS blocking my connections - maybe default should be to keep it offline.

BTW, when using proxmox console, to install the UTMFW, instructions to select/deselect packages is off the screen (and there's not scroll up) and I could not figure out how to choose packages (in case I wanted to deselect IDS).

from utmfw.

sonertari avatar sonertari commented on May 20, 2024

By default, SnortIPS blocks an IP address if the alert prio is 1 (the highest level) and the alert contains the word Portscan in the alert issued for that IP address. But if you still suspect that SnortIPS blocked you out, I suggest you look at the logs of SnortIPS, /var/log/snortips.log, all such block actions should be listed there.

I don't recommend not installing Snort IDS, because all connections going through SSLproxy are also inspected by Snort inline for intrusions. Without Snort inline in between, all those connections would fail, i.e. no web, no pop3, no smtp, making UTMFW pretty useless.

See again the screenshots you have sent. They clearly hint that there was something wrong with the interface configuration, hence more than a few configuration failures for a couple of services (this is not about SnortIPS).

Btw, I think #6 doesn't seem related.

from utmfw.

bob-u avatar bob-u commented on May 20, 2024

I tried to install UTMFW multiple times trying different ways, only couple are documented in the screenshots above. Granted this is just speculation on my part about IDS being an issue as I do not have any hard evidence besides symptoms: I was able to ssh but not to access the web interface.

from utmfw.

sonertari avatar sonertari commented on May 20, 2024

If you were able to ssh, then it cannot be SnortIPS (it blocks all traffic coming in for that IP address). Anyway, I hope all is fine now.

from utmfw.

Related Issues (19)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.