For more information about IPv6 and netfilter, refer to
Section 6, “
ip6tables
and
IPv6”
.
5.1.
iptables
Control Scripts Configuration File
The behavior of the
iptables
initscripts is controlled by the
/etc/sysconfig/iptables-config
configuration file. The following is a list of directives
contained within this file:
•
IPTABLES_MODULES
— Specifies a space-separated list of additional
iptables
modules to
load when a firewall is activated. These can include connection tracking and NAT helpers.
•
IPTABLES_MODULES_UNLOAD
— Unloads modules on restart and stop. This directive accepts
the following values:
•
yes
— The default value. This option must be set to achieve a correct state for a firewall
restart or stop.
•
no
— This option should only be set if there are problems unloading the netfilter modules.
•
IPTABLES_SAVE_ON_STOP
— Saves current firewall rules to
/etc/sysconfig/iptables
when
the firewall is stopped. This directive accepts the following values:
•
yes
— Saves existing rules to
/etc/sysconfig/iptables
when the firewall is stopped,
moving the previous version to the
/etc/sysconfig/iptables.save
file.
•
no
— The default value. Does not save existing rules when the firewall is stopped.
•
IPTABLES_SAVE_ON_RESTART
— Saves current firewall rules when the firewall is restarted.
This directive accepts the following values:
•
yes
— Saves existing rules to
/etc/sysconfig/iptables
when the firewall is restarted,
moving the previous version to the
/etc/sysconfig/iptables.save
file.
•
no
— The default value. Does not save existing rules when the firewall is restarted.
•
IPTABLES_SAVE_COUNTER
— Saves and restores all packet and byte counters in all chains
and rules. This directive accepts the following values:
•
yes
— Saves the counter values.
•
no
— The default value. Does not save the counter values.
•
IPTABLES_STATUS_NUMERIC
— Outputs IP addresses in a status output instead of domain or
hostnames. This directive accepts the following values:
•
yes
— The default value. Returns only IP addresses within a status output.
Chapter 18. iptables
340
Summary of Contents for ENTERPRISE LINUX 4.5.0 -
Page 1: ...Red Hat Enterprise Linux 4 5 0 4 5 0 Reference Guide ISBN N A Publication date ...
Page 2: ...Red Hat Enterprise Linux 4 5 0 ...
Page 4: ...Red Hat Enterprise Linux 4 5 0 ...
Page 24: ...xxiv ...
Page 26: ......
Page 36: ...12 ...
Page 72: ...48 ...
Page 112: ...88 ...
Page 122: ...98 ...
Page 140: ...116 ...
Page 142: ......
Page 300: ...276 ...
Page 318: ...294 ...
Page 320: ......
Page 332: ...308 ...
Page 350: ...326 ...
Page 378: ...354 ...
Page 388: ...364 ...
Page 394: ...370 ...
Page 395: ...Part IV Appendixes ...
Page 396: ......