1

Topic: how to correctly add firewal rules

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 1.6.5
- Deployed with iRedMail Easy or the downloadable installer? downloaded
- Linux/BSD distribution name and version: Debian 12.4
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro?
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====

Hi,

what's the correct way to add rules to the firewall?
Is it okay to directly edit /etc/nftables.conf or are there update savy ways to do it?

----

Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.

2

Re: how to correctly add firewal rules

It's ok to modify /etc/nftables.conf. smile

3 (edited by Jochen 2024-01-22 17:13:09)

Re: how to correctly add firewal rules

cool, thanks for the clarification.

Just curious… because it says at the top of /etc/nftables.conf:

#
# This file is managed by iRedMail Team "support@iredmail.org" with Ansible,
# please do __NOT__ modify it manually.
#


How do you keep changes to the file intact?

4

Re: how to correctly add firewal rules

Jochen wrote:

- Deployed with iRedMail Easy or the downloadable installer? downloaded

Oops, you mentioned this server was deployed with downloadable iRedMail installer.

If it's iRedMail Easy, please add extra firewall rules with (bash) shell script /opt/iredmail/custom/firewall/custom.sh.