Eero Volotinen
2014-Jul-15 17:59 UTC
[CentOS] FirewallD and Network manager on production servers (C7)
Hi List, Are you really using firewalld and network-manager on Centos 7 production servers or old way disabling network manager and using pure iptables like on C6? -- Eero
Jeremy Hoel
2014-Jul-15 18:20 UTC
[CentOS] FirewallD and Network manager on production servers (C7)
As i start to deploy test images of C7 I think about this same question. Part of me wants to keep the simplicity of the old method, but then someone else somewhere mentioned that the systemd stuff relies on network-manager to work better, so I don't know that keeping the old methods is better. I do dislike the new NIC naming, and that's tied to network-manager too, but I was hoping others would have more feedback about which way is better in the long run. On Tue, Jul 15, 2014 at 5:59 PM, Eero Volotinen <eero.volotinen at iki.fi> wrote:> Hi List, > > Are you really using firewalld and network-manager on Centos 7 production > servers or old way disabling network manager and using pure iptables like > on C6? > > -- > Eero > _______________________________________________ > CentOS mailing list > CentOS at centos.org > http://lists.centos.org/mailman/listinfo/centos >
Florian La Roche
2014-Jul-15 18:25 UTC
[CentOS] FirewallD and Network manager on production servers (C7)
Hello Eero Volotinen, On Tue, Jul 15, 2014 at 08:59:14PM +0300, Eero Volotinen wrote:> Hi List, > > Are you really using firewalld and network-manager on Centos 7 production > servers or old way disabling network manager and using pure iptables like > on C6?I tried to disable NetworkManager, but then ran into the following bug: https://bugzilla.redhat.com/show_bug.cgi?id=1105770 Instead of adjusting the file, I have now switched over to NetworkManager (even for local static routes). For iptables I'd rather stay with static rules, so iptables is the right thing for me... (Next item is tuned, which also looks a bit overkill to keep running.) Best regards, Florian La Roche
Nux!
2014-Jul-15 18:30 UTC
[CentOS] FirewallD and Network manager on production servers (C7)
Don't know what is the "official" way, but I build my cloud instances without firewalld and networkmanager. It's also how Fedora build the cloud images, e.g. https://git.fedorahosted.org/cgit/cloud-kickstarts.git/tree/generic/fedora-20.ks -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro ----- Original Message -----> From: "Eero Volotinen" <eero.volotinen at iki.fi> > To: "CentOS" <centos at centos.org> > Sent: Tuesday, 15 July, 2014 6:59:14 PM > Subject: [CentOS] FirewallD and Network manager on production servers (C7) > > Hi List, > > Are you really using firewalld and network-manager on Centos 7 production > servers or old way disabling network manager and using pure iptables like > on C6? > > -- > Eero > _______________________________________________ > CentOS mailing list > CentOS at centos.org > http://lists.centos.org/mailman/listinfo/centos >