05-14-2004, 11:10 AM

Does your setup support "iptables -j LOG" within the VPS?

I'm currently with another VPS provider (using Virtuozzo) and am unable to get the iptables logging to work (other aspects of iptables I need work for me).

It would be worth switching to another VPS provider to get iptables logging support.


05-14-2004, 11:39 AM
I'm pretty sure it works. However, I'll test it out to be certain.

05-14-2004, 11:48 AM
It appears as though it doesn't work. However, I'm going to see why that's that case, and if that can be changed.

05-14-2004, 05:20 PM

Hope you find out. I haven't been able to find anything yet.

05-14-2004, 11:21 PM
What wrong at Dinix and their Virtuozzo?
Just taking a shot that is where you are.

05-16-2004, 05:36 PM
I'm not at Dinix but with another company providing Virtuozzo VPS.

So far, the iptables limitations I found are:

1. -j LOG (can't log so hackers can spend weeks trying to intrude without getting noticed)

2. -m state (can't use the most common/popular rules in iptables scripts--especially ones generated by tools)

3. -m iplimit (can't limit total number of concurrent connections per ip address/class--very useful for limiting hogs or dos attacks)

There's probably more limitations but I only care about the above 3 because they are so practical.

So far, I really like Virtuozzo compared to Sphera but if I can't find workarounds for these iptables limitations, I'll be forced to try User Mode Linux (UML).