> On Thu, 2006-05-18 at 16:51 -0500, Hongwei Li wrote: >> I also tried Firestarter. Strange thing is that I set some ports open >> from it, and restart computer. Then, the iptables settings are the >> "original output" plus whatever I set in firestarter, but the >> file /etc/sysconfig/iptables goes back to "original" -- no port is >> opened from that file. So, the firestarter saves its setting >> somewhere else and adds them on top of the "original setting". > > Have you read the guides for using Firestarter? > > With some of these firewall rule tools you run them instead of iptables, > not in conjunction with iptables. Firestarter might be one of them. > > -- I figured it out last night that the problem is Firestarter. It overwrtes all iptables settings. I tried it one time, but don't feel it good and stopped. Then, all the problems came: no matter what I did with iptables, they are all gone after reboot -- firestarter erases all iptables settings and uses its firewall. Since I didn't set anothing there, no port is opened. Now, I check it off and my iptables scripts are all working normally. Anyway, thanks to all people's help. Hongwei