smoothwall q: how do i forward all ports 1024> to internal machine (for FTP server)

smoothwall q: how do i forward all ports 1024> to internal machine (for FTP server)

Post by mart » Thu, 15 Nov 2001 17:33:45



i new to this but have been trying/searching for last week+

Problems with running FTP server behind smoothwall, what change would
i need to make to the firwall rules to forward all ports 1024> to a
single ip behind firewall?

reason being customers behind firewalls can not access ftp server
behind our firwall in both pasv or active...

many thanks for any help

mart

 
 
 

smoothwall q: how do i forward all ports 1024> to internal machine (for FTP server)

Post by mart » Fri, 16 Nov 2001 05:37:27


Quote:>>i new to this but have been trying/searching for last week+

>How about looking at
>http://www.smoothwall.org/gpl/docs/
>and actually _reading_ thoose FAQ's / .pdf's..?

>This question is also answered in the .pdf files from smoothwall.

is it really?? I have read each one and search all newsgroups
so i thought i'd ask for some advice.

next time how about reading the question in the subject first.
I know you can add single ports but not whole range 1024>65535
that might take some time eh !

got answer now its...
ipmasqadm autofw -A -r tcp 1025 65535 -h INTERNAL_IP_HERE

thanks to mark for help and not shite like this...

>For 0.9.8 try,
>http://www.smoothwall.org/gpl/docs/SmoothWall_FAQ.PDF
>http://www.smoothwall.org/gpl/docs/SmoothWall.PDF
>http://www.smoothwall.org/gpl/docs/SmoothWall_Configuration_Guide.PDF
>http://www.smoothwall.org/gpl/docs/SmoothWall_Network_Guide.PDF

>For 0.9.9 try,
>http://www.smoothwall.org/download/pdf/docs/0.9.9/doc.faq.pdf
>http://www.smoothwall.org/download/pdf/docs/0.9.9/doc.userguide.print...
>http://www.smoothwall.org/download/pdf/docs/0.9.9/doc.config.screen.pdf
>http://www.smoothwall.org/download/pdf/docs/0.9.9/doc.networkguide.pdf

>There's also a NG for smoothwall, try,
>alt.os.linux.smoothwall

>>Problems with running FTP server behind smoothwall, what change would
>>i need to make to the firwall rules to forward all ports 1024> to a
>>single ip behind firewall?

>Hint of the week, try point some browser on ya network to,
>http://<your_smoothwall_ip>
>log in as admin, and click the "forwarding" link....

>>reason being customers behind firewalls can not access ftp server
>>behind our firwall in both pasv or active...

>Of course.  Thats the point of having a firewall, right..?
>Blocking ports / dropping connections...

>>many thanks for any help

>Sure...

>FollowUp-To set to
>alt.os.linux.smoothwall

>>mart

>Who should read some FAQ's before posting for help...

.co.uk/

 
 
 

smoothwall q: how do i forward all ports 1024> to internal machine (for FTP server)

Post by neur » Sun, 18 Nov 2001 03:43:43



Quote:> i new to this but have been trying/searching for last week+

> Problems with running FTP server behind smoothwall, what change would
> i need to make to the firwall rules to forward all ports 1024> to a
> single ip behind firewall?

> reason being customers behind firewalls can not access ftp server
> behind our firwall in both pasv or active...

surely the best course of action is to get the clients sorted using passive
ftp, instead of opening up a huge range of ports like that ... might as well
not use a firewall ;)

--

| '_ \ / _ \ | | | '__/ _ \  "The thing I love most about deadlines is the
| | | |  __/ |_| | | | (_) |   wonderful WHOOSHing sound they make as they
|_| |_|\___|\__,_|_|  \___/        go past." - Douglas Adams (1952 - 2001)

 
 
 

1. HELP Port Forwarding on Linux: Dest Port Known, Source Port High (1024-65535)

I am using a linux box as a NAT router trying to forward incomming Netware 5
IP traffic to a different host on the internal network...

I have been looking for info on generic modules to do this, can't find any.  
(probably my ignorance)

Currently I forward http, ftp, nntp to internal servers for external users.

But would like to set up these TCP & UDP redirectors to replicate & use
Netware 5 IP services over the internet.

Any suggestions?

JJ Scott

2. DISPLAY

3. Sendmail .forward > 1024 characters

4. using niscat to list people in aliases

5. Squid/ forwarding port 80 to internal network machine.

6. Could you get fired for choosing Linux?

7. Linux eats Dos on harddisk > 1024 cyl

8. Unix to DOS File Transfer

9. IDE cyls>1024, DOS + Linux problems

10. What's named doing on port 1024/udp ?

11. forwarding ftp to internal server thru firewall

12. List of Service ports > 1024

13. Port forwarding on Smoothwall