firewall problem again

Vasilis Vasaitis mod at hal.csd.auth.gr
Sun Feb 14 16:56:07 EET 1999


On Sun, Feb 14, 1999 at 12:19:51AM +0200, I.Ioannou wrote:
> Epanerxomai se kati pou ksanarwthsa, sorry, alla paw na trelathw :
> 
> Se firewall me IP x.x.x.7 thelw na afhsw mhxanhma pou einai
>  panw sthn eth1 kai exei IP x.x.x.8. Taytoxrona kanw kai 
> masquarading se mixanimata me 192.168.0.x sthn eth0 . Deinw :
> 
> ipfwadm -F -p deny
> ipfwadm -F -f
> 
> ipfwadm -F -i accept -V x.x.x.7 -W eth1 -b -S 0.0.0.0/0 \ 
> -D x.x.x.8/255.255.255.252
> 
> ipfwadm -F -i accept -V x.x.x.7 -W eth1 -b \ 
> -S x.x.x.8/255.255.255.252 -D 0.0.0.0/0 
> 
> ipfwadm -F -i m -S 192.168.0.0/255.255.255.255 -D 0.0.0.0/0
> 

  Prepei na omologiso oti ta netmasks pou xrisimopoieis mou fainontai poli
perierga? Den tha itan kalitera an evazes kai stis treis autes entoles gia
netmask to 255.255.255.0? ('i ena sketo 24, einai to idio). Episis to -b
ti rolo eksipiretei, kai giati to vazeis afou dineis rules kai gia tis dio
kateuthinseis?

  Genika pantos dokimaze panta me ta elaxista dinata options prota (diladi
xoris to -V kai to -W), kai ama einai OK vaze ta ena ena kai des pote
stamataei na douleuei.

> To ipfwadm -F -l mou ta deixnei swsta, kai to ipfwadm -F -c , 
> me sygkekrimena paketa, apo kai pros to static x.x.x.8 mou leei oti
> einai accepted. Alla enw to masquarading einai ok, to static IP den
> paizei para mono an balw default policy accept (aparadekto). 
> 
> Ti mou diafeygei ? Kamia idea ?
> 
> ---
> I.Ioannou <roryt at hol.gr>

Vasilis Vasaitis
vvas at egnatia.ee.auth.gr

--
====================================================================
Gia boithia (h na diagrafhte) e-mail sto majordomo at hellug.gr
Ta archives tis listas einai sto http://lists.hellug.gr
prin steilete kapoia erothsh psakte mipos exei hdh apanththei.
Gia opoiodipote problima stilte e-mail ston owner-linux-greek-users
====================================================================



More information about the Linux-greek-users mailing list