
how-to block ads
|
  gwion wild colonial boy Premium,ExMod 2001-08 join:2000-12-28 Pittsburgh, PA
| reply to Luka1 Re: [Kerio 2.x] Edit conf file, outside kerio ?
Here's the catch... Kerio 2.x was a superb piece of work, and knows how to defend itself... meaning that, if you change the disk copy of the rules with the firewall running, it'll check the file, at shutdown, notice it doesn't match the copy in memory, assume it's been tampered with, and overwrite it with the... same ruleset you started with. What you have to do is stop the firewall service manually, copy in the edited ruleset, then restart the firewall service or reboot... that's been discussed, before. Also, note, the rulestes are encrypted... I used to know how to decrypt and re-encrypt them, but I've pretty much encrpted that part of my brain, using the "passage of time" algorithm --- somebody may be able to help, though. Meanwhile, best practice, I've found, is to always keep a recent backup copy on the disk. That way, you can always import and resave the backup as your default ruleset, with minimal loss... wish you luck, hope you can work something out... -- Semper Eadem -- Ils ont change ma chanson ma Ils ont change ma chanson C'est la seule chose que je peuz faire Et ce n'est pas bon ma Ils ont change ma chanson. ... | |   Luka1
join:2001-10-30 Index, WA
| Thank you for the reply.
Yes, I already figured all that, out.

I could not start the firewall back up because of those two bad rules. It would get to the point where it was loading up the ruleset, then went into a forever loop, repeating the error messages for those rules, first one, then the other then back to the first, then back to the second... Etc...
The way I got my firewall back was to use msconfig to cause the firewall not to try to start on startup. Rebooted the computer.
Then with the firewall not running. I deleted the current conf file. Renamed my most recent backup to the same name as the file I just deleted...
Then started it manually. It started just fine. But man, I had a lot of work trying to catch up on the changes I'd made since that backup.
I have not gotten anywhere near being caught up.
I'd like to know how to unencrypt the file that is causing problems, edit it to remove those two rules, then re-encrypt it so I can use it again. | |
|