• Our team is looking to connect with folks who use email services provided by Plesk, or a premium service. If you'd like to be part of the discovery process and share your experiences, we invite you to complete this short screening survey. If your responses match the persona we are looking for, you'll receive a link to schedule a call at your convenience. We look forward to hearing from you!
  • We are looking for U.S.-based freelancer or agency working with SEO or WordPress for a quick 30-min interviews to gather feedback on XOVI, a successful German SEO tool we’re looking to launch in the U.S.
    If you qualify and participate, you’ll receive a $30 Amazon gift card as a thank-you. Please apply here. Thanks for helping shape a better SEO product for agencies!
  • The BIND DNS server has already been deprecated and removed from Plesk for Windows.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS. We strongly recommend transitioning to Microsoft DNS within the next 6 weeks, before the Plesk 18.0.70 release.
  • The Horde component is removed from Plesk Installer. We recommend switching to another webmail software supported in Plesk.

Resolved Plesk Firewall - SE Linux, firewalld, iptables

bskrakes

Basic Pleskian
Hello,

I am wondering if anyone can confirm how the extension Plesk Firewall extension works? I.E is Plesk Firewall using SE Linux, firewalld or old school iptables?

If I remove Plesk Firewall what does this do to the system?

Does anyone know why Plesk Firewall doesn't show up on the Plesk Extension website?

Thank you,
 
Hello,

I am wondering if anyone can confirm how the extension Plesk Firewall extension works? I.E is Plesk Firewall using SE Linux, firewalld or old school iptables?
iptables


Does anyone know why Plesk Firewall doesn't show up on the Plesk Extension website?
It's in Plesk components, not extensions.
Where you decide to have dovecot or courier, install PHP-versions....

If I remove Plesk Firewall what does this do to the system?
It leaves you with an empty iptables.

What I do on a "maiden plesk setup" is use "iptables-save' to have a backup of the current firewall.
Then study the file if there are "new things"
I then use my own iptables file I have in /etc
make sure that gets loaded with iptables-restore and that's it.
 
Thanks for your reply mr-wolf. Do you use SELinux or just iptables?

I find it strange that Pleks Firewall shows up under "Extensions" after installed, although like you say it is a "Component" under the additional install features of Plesk.
 
Thanks for your reply mr-wolf. Do you use SELinux or just iptables?

I find it strange that Pleks Firewall shows up under "Extensions" after installed, although like you say it is a "Component" under the additional install features of Plesk.
Maybe that's an additional front-end?
I wouldn't know as I always remove the Plesk firewall from components.
 
Ok thanks mr-wolf. I am using a firewall appliance that sits in front of the server plus SELinux which I think is sufficient.

The built in Security Advisor recommends installing Plesk Firewall but iptables is old school. It would be nice if they modified the Plesk add-on to use firewalld and/or tie into SELinux.
 
Back
Top