Customization
/sa2/upgrades
Customizing the firewall
The Magnia SG20 contains firewall based on Linux IP Tables. The default configuration
for the firewall is established in the firewall template in /sa2/templates/etc/rc.d/
init.d/iptables. In addition, there are custom firewall rules defined which the user
can select or deselect. These rules are accessible through the Web-based remote
administration screens in the advanced firewall page. These rules can be checked on or
off (the default is off). These custom rules open holes in the firewall for items such as
FTP access, Cisco VPN passthrough, and Internet gaming. Adding custom firewall rules
in this area is the preferred method for customizing the Magnia SG20 firewall.
CAUTION: Modifying the firewall rules is not recommended unless you are
experienced with IP Tables and firewall definitions. Adding inappropriate rules
added to the firewall can cause your system to become completely inaccessible,
require you to return the disk to the factory for re-imaging. Use care when
establishing new firewall rules.
NOTE: Take a disk snapshot before changing or adding custom firewall rules, so
that you can restore the system if needed.
Adding a custom firewall rule that can be selected and deselected using the Web
administration is simple. By simply creating a new directory under the /sa2/firewall
directory, and placing several simple files in this directory, a new user-selectable firewall
rule is added to the user interface.
To add a new custom firewall rule, connect to the SG20 as root using Telnet, and perform
the following steps.
1
Create a new directory under /sa2/firewall, using a name relating to the new rule you
are adding. For example:
/sa2/firewall/vpnport500
This directory contains information about the current
state of the system's software upgrades. Because this
area is downloaded from, and communicates with, the
Toshiba Software Upgrades site, it is a good idea not to
modify it. If your preinstall image is sent to the Toshiba
factory, Toshiba changes a file in this directory to point to
a custom software upgrade Web site for your company.
Customizing the firewall
17
Need help?
Do you have a question about the SG20 - Magnia - Web Server and is the answer not in the manual?
Questions and answers