[FUGSPBR] IPFW
Rodigo Mosconi
mosconi em facil.psi.br
Qua Dez 8 14:09:14 BRST 2004
Boa tarde lista:
Somente agora, apos 4 anos no mundo *nix (Linux e FreeBSD) tive a possibildade de configurar um firewall, mas por algum motivo que desconheco, nao estou conseguindo resolver nomes, a nao ser permitindo tudo
Eis aqui as minhas regras do ipfw:
00005 allow ip from any to any via lo
00010 check-state
00110 allow tcp from any to any dst-port 53 via rl0 setup keep-state
00111 allow udp from any to any dst-port 53 via rl0 keep-state
00200 allow tcp from any to any dst-port 80 via rl0 out setup keep-state
00220 allow tcp from any to any dst-port 25 via rl0 setup keep-state
00221 allow tcp from any to any dst-port 110 via rl0 setup keep-state
00230 allow tcp from me to any dst-port 22 via rl0 out setup keep-state
00240 allow tcp from any to any dst-port 5190 via rl0 out setup keep-state
01000 allow icmp from any to any via rl0 keep-state
02000 allow tcp from me to any via rl0 out setup uid root keep-state
03000 allow tcp from any to me dst-port 80 via rl0 in setup limit src-addr 2
03100 allow log tcp from any to me dst-port 60022 via rl0 in setup limit src-addr 3
65535 deny ip from any to any
N
ha um outro problema curioso: nao consigo me pingar.
Norton-Thevenin# ping 192.168.254.1
PING 192.168.254.1 (192.168.254.1): 56 data bytes
ping: sendto: Permission denied
ping: sendto: Permission denied
Agradeco desde ja
Mosconi
_______________________________________________________________
Para enviar um novo email para a lista: fugspbr em fugspbr.org
Sair da Lista: http://lists.fugspbr.org/listinfo.cgi
Historico: http://www4.fugspbr.org/lista/html/FUG-BR/
Mais detalhes sobre a lista de discussão freebsd