This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Joomla backend settings for Astaro

Hi,

I cannnot use my Joomla backend software.
I can login and browse through the backend, but cannot save any settings.
I have turned off Web filtering and IPS but still cannot save any changes to the backend.
My config.php is writable, that's not the issue.

I hope i gave enough information to get me started in the right direction, or otherwise i will provide them as needed.

I'm using v8.201

Kind regards Stegman


This thread was automatically locked due to age.
  • Hi Bob,

    Where do i find the Packet Filter Log?
    When i go to 'Logging and Reporting' - ' View Log Files' - Tab ' Search Log Files' and open the pull down menu there is no ' Packet Filter' to select.
  • That packet appears to have been dropped because it was "uninvited" - it looks like a response to an HTTP request, but the firewall's connection tracker doesn't have an entry for it.  Please post the same line from the full Packet Filter log as the Live Log doesn't have complete information.

    Cheers - Bob


    Hi Bob,

    Where do i find the Packet Filter Log?
    When i go to 'Logging and Reporting' - ' View Log Files' - Tab ' Search Log Files' and open the pull down menu there is no ' Packet Filter' to select.


    I found this log where the 77.243.***.*** is my hosting provider:
    2011:09:20-20:42:46 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45555" tcpflags="RST" 
    2011:09:20-20:42:46 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45553" tcpflags="RST" 
    2011:09:20-20:42:46 firewall-r ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.4***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45555" tcpflags="RST" 
    2011:09:20-20:42:46 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45553" tcpflags="RST" 
    2011:09:20-20:42:48 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45553" tcpflags="RST" 
    2011:09:20-20:42:48 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45555" tcpflags="RST" 
    2011:09:20-20:42:48 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45553" tcpflags="RST" 
    2011:09:20-20:42:48 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60001" initf="eth2" srcmac="0:30:b8:c1:e6:50" dstmac="0:16:a:24:a8:fa" srcip="77.243.***.***" dstip="94.208.***.***" proto="6" length="40" tos="0x08" prec="0x40" ttl="59" srcport="80" dstport="45555" tcpflags="RST" 

    and further in the log also the IP of my registered site:

    2011:09:20-20:42:54 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2211" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2185" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2207" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall-r ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2215" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2168" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2165" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2203" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2184" tcpflags="ACK PSH FIN" 
    2011:09:20-20:42:58 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2202" tcpflags="ACK PSH FIN" 
    2011:09:20-20:43:01 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2166" tcpflags="ACK PSH FIN" 
    2011:09:20-20:43:01 firewall- ulogd[4964]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60003" outitf="eth1" srcmac="0:16:a:24:a4:62" srcip="74.125.***.***" dstip="10.0.0.13" proto="6" length="40" tos="0x00" prec="0x00" ttl="64" srcport="80" dstport="2199" tcpflags="ACK PSH FIN"
  • It appears that this is a webserver that doesn't play well with proxies, you could confirm that by looking in the Content Filter (HTTP/S) log beginning at 2011:09:20-20:42 to see what information is here about this.

    If that's the problem, and the HTTP/S Proxy is in a Standard mode, just configure your browser with an Exception for 77.243.***.*** and 74.125.***.*** .  If the Proxy is in a transparent mode, then add the IPs to the 'Transparent mode skiplist'.

    Cheers - Bob
  • I added them to the Transparent Mode Skiplist (as the proxy is in transparent mode list)
    to both source and destination and do not see any blocks anymore in the firewall log.
    When i look in the web filtering log i see a lot of other IP's from the same 74.125 range being blocked.
    I will look into it and post my exact findings......to be continued

    Thanks for the help so far
  • I'm not sure what is happening, but i see a lot of fwrule  60001 and 60003 lines in the logs.
  • You might want to replace the host definition in the 'Transparent mode skiplist' with a network definiton.

    Then again, if you look at the Content Filter (HTTP/S), you might see that this is a specific website for which you could create an exception.

    Cheers - Bob
  • You might want to replace the host definition in the 'Transparent mode skiplist' with a network definiton.

    Then again, if you look at the Content Filter (HTTP/S), you might see that this is a specific website for which you could create an exception.

    Cheers - Bob


    I created the exeption and it seems to work now, but i have to take a look at the permissions on the backend now, that are not set properly
    I think this is a hosting provider issue.
    I will update this thread when the issue is solved completely.

    Thanks for the great help so far!!