000028190 - KB-1170 - How to disable HTTP access on the appliance

Document created by RSA Customer Support Employee on Jun 14, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 2Show Document
  • View in full screen mode

Article Content

Article Number000028190
Applies ToAffected Versions: All Versions
ResolutionTo disable http access to the appliance use the following process:
1. log-in to a console as root
2. edit /etc/sysconfig/iptables
3. comment (place a "#" in front of the following 2 lines as in:
#-A PREROUTING -i bond0 -p tcp -m tcp --dport 80 -j REDIRECT --to-ports 8445
#-A PREROUTING -i bond0 -p tcp -m tcp --dport 8080 -j REDIRECT --to-ports 8445
4. restart the iptables using the command:
service iptables restart
5. Accessing the machines using http will now produce an "unable to connect" error. No restart of the system/server is required.