Iptables Help needed

Iptables Help needed

Post by Neil Watso » Thu, 07 Jun 2001 22:15:10



Hello,

I'm adding some custom rules to Bastille's netfilter firewall.  I've added
these rules:

 #Accept all connections to pop server
        #from  my remote IP

        ${IPTABLES} -A PUB_IN -m tcp -p tcp -i ppp+ -s ${RIP} --sport 11110
-d ${SIP} --dport 110 -j ACCEPT

        #Accept all connections to sshd server
        #from my remote IP

        ${IPTABLES} -A PUB_IN -m tcp -p tcp -i ppp+ -s ${RIP} --sport 22 -d
${SIP} --dport 22 -j ACCEPT

The rules run without error.  However when I run iptables -L PUB_IN to see
the rules listing:

Chain PUB_IN (1 references)
target     prot opt source               destination
ACCEPT     tcp  --  anywhere             anywhere           tcp spt:11110
dpt:pop3
ACCEPT     tcp  --  anywhere             anywhere           tcp spt:ssh
dpt:ssh

Shouldn't the source and destination show the ip addresses I've entered in
$RIP and $SIP?

Thanks,
--
Neil Watson
www.watson-wilson.ca

 
 
 

Iptables Help needed

Post by Neil Wats » Fri, 08 Jun 2001 02:14:47


I'm a little closer now:

My rules look like this:

ACCEPT     tcp  --  xxx.xxx.xxx.xxx/24      my.domain   tcp spt:xxx
dpt:xxx
ACCEPT     tcp  --  xxx.xxx.xxx.xxx/24      my.domain   tcp spt:xxx
dpt:xxx

It appears to be OK.  Howerver when I remove the xxx ports from the
Public Access list in Bastille and enter these rules at the beginning
of the PUB_IN chain I cannot get access :(

Any ideas?

Neil Watson

 
 
 

1. patching up iptables - help needed

Hi all.

Please shed some light on how to patch up iptables.
Details:
- trying to patch up from 1.2.5 to 1.2.6a and then to 1.2.7a;
- downloaded patches;
- tried "patch" command with various options (always with "--dry-run" and
"-verbose");
- got stack. Definitely need help!!

Cheers,
BBM

2. Mouse troubles - More specific - OOPS

3. Iptables-Help Needed

4. OpenServer pre-evaluation questions

5. Help with iptables - RH 8.0 - stopped working after "iptables -F"

6. where is /sbin/sysconfig in Solaris 8 CDROM ?

7. Iptables "paranoia plus" ruleset... need help

8. SuSe Linux 9.0/Shuttle AN35N Ultra

9. Help needed in IPTABLES - NAT - URGENT!!!!

10. Need help iptables module error

11. help needed with iptables...

12. need help for IPTABLES

13. Need help with iptables script