Iptables Wrapper Script; Supporting Network Management System - Novell ZENWORKS NETWORK ACCESS CONTROL 5.0 - 09-22-2008 User Manual

Table of Contents

Advertisement

/var/log/nac/nac-es.log
3e Verify that the EDAC is using the virtual interface you created. The log should contain a
line similar to the following:
[070509-MDT 10:53:11.366 DeviceActivityCapture-INFO ] Listening on: eth1:1

16.20 iptables Wrapper Script

To avoid creating conflicts between iptables and the nac-es service, do not run the following
commands manually:
/etc/init.d/iptables
service iptables start
service iptables stop
service iptables restart
The nac-es service must be shutdown before making changes to the iptables firewall. This
script ensures that errors are not introduced by making changes when nac-es is running.
Use the following commands to control iptables from the command line:
To stop iptables:
fw_control stop
To start iptables:
fw_control start
To restart iptables:
fw_control restart
To save iptables config:
fw_control save
To get iptables status (iptables -L):
fw_control status
NOTE: Note that this last command can be used even if the nac-es service is running since it makes
no changes to the iptables rules.

16.21 Supporting Network Management System

This section describes Network Management System (NMS) settings.
The following sections contain more information:
Section 16.21.1, "Enabling ICMP Echo Requests," on page 374
System Administration 373

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zenworks network access control 5.0

Table of Contents