Bug 61958

Summary: ipchains blocking https when http allowed
Product: [Retired] Red Hat Linux Reporter: Jukka Lehti <jukkalehti>
Component: gnome-lokkitAssignee: Bill Nottingham <notting>
Status: CLOSED RAWHIDE QA Contact: Ben Levenson <benl>
Severity: medium Docs Contact:
Priority: low    
Version: 7.2CC: rvokal
Target Milestone: ---Keywords: FutureFeature
Target Release: ---   
Hardware: i386   
OS: Linux   
Whiteboard:
Fixed In Version: 1.3.5-1 Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2004-03-11 05:59:32 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Jukka Lehti 2002-03-26 09:26:22 UTC
When installing Red Hat Linux 7.2 and selecting "Medium level" firewall +
customizing firewall to allow http connections (port 80), https connections
(port 443) are still blocked. IMHO https should be allowed for users who allow
http (or at least an option provided to allow https, too).

I fixed this manually adding line

-A input -s 0/0 -d 0/0 443 -p tcp -y -j ACCEPT

to the end of file /etc/sysconfig/ipchains but probably this should be done
automatmc.

Comment 1 Michael Fulbright 2002-03-27 06:27:10 UTC
We will consider this enhancement in a future release.

There is currently a field to enter arbitrary ports in so it is still possible
to enable this port through the UI.

Comment 2 Michael Fulbright 2003-04-16 18:59:03 UTC
This is a configuration decision for the lokkit program.

Comment 3 Bill Nottingham 2004-03-11 05:59:32 UTC
Fixed in system-config-securitylevel-1.3.5-1.