host not reachable through http, suspected iptables issue The Next CEO of Stack Overflowftp...

Could a dragon use its wings to swim?

Is fine stranded wire ok for main supply line?

From jafe to El-Guest

Strange use of "whether ... than ..." in official text

Help! I cannot understand this game’s notations!

How to avoid supervisors with prejudiced views?

Help/tips for a first time writer?

Man transported from Alternate World into ours by a Neutrino Detector

How do I fit a non linear curve?

Reference request: Grassmannian and Plucker coordinates in type B, C, D

Is it OK to decorate a log book cover?

Computationally populating tables with probability data

Can you teleport closer to a creature you are Frightened of?

Airplane gently rocking its wings during whole flight

TikZ: How to fill area with a special pattern?

Calculate the Mean mean of two numbers

Why don't programming languages automatically manage the synchronous/asynchronous problem?

Towers in the ocean; How deep can they be built?

Is it professional to write unrelated content in an almost-empty email?

My ex-girlfriend uses my Apple ID to login to her iPad, do I have to give her my Apple ID password to reset it?

Reshaping json / reparing json inside shell script (remove trailing comma)

Can Sneak Attack be used when hitting with an improvised weapon?

Is there a reasonable and studied concept of reduction between regular languages?

How did Beeri the Hittite come up with naming his daughter Yehudit?



host not reachable through http, suspected iptables issue



The Next CEO of Stack Overflowftp tls firewalled :(iptables allow http incoming connections, state NEW, ESTABLISHEDTrying to make iptables stateless is causing unforeseen filteringuse iptables to limit the number of concurrent http requests per ipFail2Ban - Iptables - Set does not existRHEL 6 Having issues forwarding port 80 to port 8080Firewall rules for ssh, ftp and webappsconnection has timed out, iptable settingsCentos 7 , Master-slave replication iptables?debian kvm server with iptables is dropping bridge packets












0















I am trying to reconfigure httpd my virtual private server but I cannot seem to access it. curl on the server itself works but trying to hit the server using chrome on another pc gives a "this site took too long to respond" error message.



My vps has centos 7 but oddly it has iptables and not firewalld installed.



this is the contents of my /etc/sysconfig/iptables file, do I need to change something to allow http on port 80 and https on 443?



Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019
*raw
:PREROUTING ACCEPT [654:52805]
:OUTPUT ACCEPT [577:72088]
COMMIT



Completed on Wed Mar 27 19:30:55 2019



Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



*mangle
:PREROUTING ACCEPT [654:52805]
:INPUT ACCEPT [654:52805]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [577:72088]
:POSTROUTING ACCEPT [577:72088]
COMMIT



Completed on Wed Mar 27 19:30:55 2019



Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



*filter
:INPUT ACCEPT [0:0]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [44:9111]
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p icmp -j ACCEPT
-A INPUT -i lo -j ACCEPT
-A INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT
-A INPUT -j REJECT --reject-with icmp-host-prohibited
-A INPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
-A FORWARD -j REJECT --reject-with icmp-host-prohibited
-A OUTPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate ESTABLISHED -j ACCEPT
COMMIT



Completed on Wed Mar 27 19:30:55 2019



Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



*nat
:PREROUTING ACCEPT [392:22692]
:POSTROUTING ACCEPT [14:1008]
:OUTPUT ACCEPT [14:1008]
COMMIT



Completed on Wed Mar 27 19:30:55 2019









share







New contributor




Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
Check out our Code of Conduct.

























    0















    I am trying to reconfigure httpd my virtual private server but I cannot seem to access it. curl on the server itself works but trying to hit the server using chrome on another pc gives a "this site took too long to respond" error message.



    My vps has centos 7 but oddly it has iptables and not firewalld installed.



    this is the contents of my /etc/sysconfig/iptables file, do I need to change something to allow http on port 80 and https on 443?



    Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019
    *raw
    :PREROUTING ACCEPT [654:52805]
    :OUTPUT ACCEPT [577:72088]
    COMMIT



    Completed on Wed Mar 27 19:30:55 2019



    Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



    *mangle
    :PREROUTING ACCEPT [654:52805]
    :INPUT ACCEPT [654:52805]
    :FORWARD ACCEPT [0:0]
    :OUTPUT ACCEPT [577:72088]
    :POSTROUTING ACCEPT [577:72088]
    COMMIT



    Completed on Wed Mar 27 19:30:55 2019



    Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



    *filter
    :INPUT ACCEPT [0:0]
    :FORWARD ACCEPT [0:0]
    :OUTPUT ACCEPT [44:9111]
    -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
    -A INPUT -p icmp -j ACCEPT
    -A INPUT -i lo -j ACCEPT
    -A INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT
    -A INPUT -j REJECT --reject-with icmp-host-prohibited
    -A INPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
    -A FORWARD -j REJECT --reject-with icmp-host-prohibited
    -A OUTPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate ESTABLISHED -j ACCEPT
    COMMIT



    Completed on Wed Mar 27 19:30:55 2019



    Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



    *nat
    :PREROUTING ACCEPT [392:22692]
    :POSTROUTING ACCEPT [14:1008]
    :OUTPUT ACCEPT [14:1008]
    COMMIT



    Completed on Wed Mar 27 19:30:55 2019









    share







    New contributor




    Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
    Check out our Code of Conduct.























      0












      0








      0








      I am trying to reconfigure httpd my virtual private server but I cannot seem to access it. curl on the server itself works but trying to hit the server using chrome on another pc gives a "this site took too long to respond" error message.



      My vps has centos 7 but oddly it has iptables and not firewalld installed.



      this is the contents of my /etc/sysconfig/iptables file, do I need to change something to allow http on port 80 and https on 443?



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019
      *raw
      :PREROUTING ACCEPT [654:52805]
      :OUTPUT ACCEPT [577:72088]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *mangle
      :PREROUTING ACCEPT [654:52805]
      :INPUT ACCEPT [654:52805]
      :FORWARD ACCEPT [0:0]
      :OUTPUT ACCEPT [577:72088]
      :POSTROUTING ACCEPT [577:72088]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *filter
      :INPUT ACCEPT [0:0]
      :FORWARD ACCEPT [0:0]
      :OUTPUT ACCEPT [44:9111]
      -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
      -A INPUT -p icmp -j ACCEPT
      -A INPUT -i lo -j ACCEPT
      -A INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT
      -A INPUT -j REJECT --reject-with icmp-host-prohibited
      -A INPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
      -A FORWARD -j REJECT --reject-with icmp-host-prohibited
      -A OUTPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate ESTABLISHED -j ACCEPT
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *nat
      :PREROUTING ACCEPT [392:22692]
      :POSTROUTING ACCEPT [14:1008]
      :OUTPUT ACCEPT [14:1008]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019









      share







      New contributor




      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.












      I am trying to reconfigure httpd my virtual private server but I cannot seem to access it. curl on the server itself works but trying to hit the server using chrome on another pc gives a "this site took too long to respond" error message.



      My vps has centos 7 but oddly it has iptables and not firewalld installed.



      this is the contents of my /etc/sysconfig/iptables file, do I need to change something to allow http on port 80 and https on 443?



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019
      *raw
      :PREROUTING ACCEPT [654:52805]
      :OUTPUT ACCEPT [577:72088]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *mangle
      :PREROUTING ACCEPT [654:52805]
      :INPUT ACCEPT [654:52805]
      :FORWARD ACCEPT [0:0]
      :OUTPUT ACCEPT [577:72088]
      :POSTROUTING ACCEPT [577:72088]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *filter
      :INPUT ACCEPT [0:0]
      :FORWARD ACCEPT [0:0]
      :OUTPUT ACCEPT [44:9111]
      -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
      -A INPUT -p icmp -j ACCEPT
      -A INPUT -i lo -j ACCEPT
      -A INPUT -p tcp -m state --state NEW -m tcp --dport 22 -j ACCEPT
      -A INPUT -j REJECT --reject-with icmp-host-prohibited
      -A INPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate NEW,ESTABLISHED -j ACCEPT
      -A FORWARD -j REJECT --reject-with icmp-host-prohibited
      -A OUTPUT -p tcp -m multiport --dports 80,443 -m conntrack --ctstate ESTABLISHED -j ACCEPT
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019



      Generated by iptables-save v1.4.21 on Wed Mar 27 19:30:55 2019



      *nat
      :PREROUTING ACCEPT [392:22692]
      :POSTROUTING ACCEPT [14:1008]
      :OUTPUT ACCEPT [14:1008]
      COMMIT



      Completed on Wed Mar 27 19:30:55 2019







      iptables https http httpd





      share







      New contributor




      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.










      share







      New contributor




      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.








      share



      share






      New contributor




      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.









      asked 6 mins ago









      KynrekKynrek

      1011




      1011




      New contributor




      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.





      New contributor





      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






      Kynrek is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
      Check out our Code of Conduct.






















          0






          active

          oldest

          votes












          Your Answer








          StackExchange.ready(function() {
          var channelOptions = {
          tags: "".split(" "),
          id: "2"
          };
          initTagRenderer("".split(" "), "".split(" "), channelOptions);

          StackExchange.using("externalEditor", function() {
          // Have to fire editor after snippets, if snippets enabled
          if (StackExchange.settings.snippets.snippetsEnabled) {
          StackExchange.using("snippets", function() {
          createEditor();
          });
          }
          else {
          createEditor();
          }
          });

          function createEditor() {
          StackExchange.prepareEditor({
          heartbeatType: 'answer',
          autoActivateHeartbeat: false,
          convertImagesToLinks: true,
          noModals: true,
          showLowRepImageUploadWarning: true,
          reputationToPostImages: 10,
          bindNavPrevention: true,
          postfix: "",
          imageUploader: {
          brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
          contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
          allowUrls: true
          },
          onDemand: true,
          discardSelector: ".discard-answer"
          ,immediatelyShowMarkdownHelp:true
          });


          }
          });






          Kynrek is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f960878%2fhost-not-reachable-through-http-suspected-iptables-issue%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown

























          0






          active

          oldest

          votes








          0






          active

          oldest

          votes









          active

          oldest

          votes






          active

          oldest

          votes








          Kynrek is a new contributor. Be nice, and check out our Code of Conduct.










          draft saved

          draft discarded


















          Kynrek is a new contributor. Be nice, and check out our Code of Conduct.













          Kynrek is a new contributor. Be nice, and check out our Code of Conduct.












          Kynrek is a new contributor. Be nice, and check out our Code of Conduct.
















          Thanks for contributing an answer to Server Fault!


          • Please be sure to answer the question. Provide details and share your research!

          But avoid



          • Asking for help, clarification, or responding to other answers.

          • Making statements based on opinion; back them up with references or personal experience.


          To learn more, see our tips on writing great answers.




          draft saved


          draft discarded














          StackExchange.ready(
          function () {
          StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f960878%2fhost-not-reachable-through-http-suspected-iptables-issue%23new-answer', 'question_page');
          }
          );

          Post as a guest















          Required, but never shown





















































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown

































          Required, but never shown














          Required, but never shown












          Required, but never shown







          Required, but never shown







          Popular posts from this blog

          As a Security Precaution, the user account has been locked The Next CEO of Stack OverflowMS...

          Список ссавців Італії Природоохоронні статуси | Список |...

          Українські прізвища Зміст Історичні відомості |...