1

Topic: Default IPTABLES why port 21

==== Required information ====
- iRedMail version (check /etc/iredmail-release): 0.9.4
- Linux/BSD distribution name and version: Deb8
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): MySQL
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? yes
- Related log if you're reporting an issue:
====

Hi, I did an NMAP to my new iredmail server. This was the results. I wonder why port 21 is open by default in a new install of iredmail. Can I disable this port and where do I find the config for this?

Nmap scan report for iredmailserver.com
Host is up (0.0097s latency).
Not shown: 987 filtered ports
PORT     STATE SERVICE
21/tcp   open  ftp
22/tcp   open  ssh
25/tcp   open  smtp
80/tcp   open  http
110/tcp  open  pop3
143/tcp  open  imap
443/tcp  open  https
554/tcp  open  rtsp
587/tcp  open  submission
993/tcp  open  imaps
995/tcp  open  pop3s
3128/tcp open  squid-http
8080/tcp open  http-proxy

----

Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.

2

Re: Default IPTABLES why port 21

iRedMail stores iptables rules in /etc/default/iptables, port 21 is not open by default.
Could you please check whether you have port 21 defined there?

3

Re: Default IPTABLES why port 21

ZhangHuangbin wrote:

iRedMail stores iptables rules in /etc/default/iptables, port 21 is not open by default.
Could you please check whether you have port 21 defined there?

Not defined... And the output of iptables -L is according to the config file.

Really strange. It's a default install of iredmail with postscreen and manual Certifikatet.

Hm...

4

Re: Default IPTABLES why port 21

tyllee wrote:
ZhangHuangbin wrote:

iRedMail stores iptables rules in /etc/default/iptables, port 21 is not open by default.
Could you please check whether you have port 21 defined there?

Not defined... And the output of iptables -L is according to the config file.

Really strange. It's a default install of iredmail with postscreen and manual Certifikatet.

Hm...

Typo from me... Did nmap to different server.

Sorry bothering You!