RE: [Firestarter-user] firestarter 9.2 portforwarding
Brought to you by:
majix
From: Myers, N. <NM...@fo...> - 2003-10-22 01:15:52
|
I'm betting is not the firewall box that's giving you trouble, make sure the traffic is getting to the mail server, try telnet to port 2000 from the firewall to the mail server make sure you get a response if you do, than it's the firewall but my feeling is that is something else network related or mail server related. -----Original Message----- From: Larry Clark [mailto:net...@di...] Sent: Tuesday, October 21, 2003 1:20 PM To: 'Myers, Nathan'; 'Jack Bowling' Cc: fir...@li... Subject: RE: [Firestarter-user] firestarter 9.2 portforwarding the IP on the external id a fractional t3 line, and the line I connect wiht is a dsl line but for business, they don't block anything for me.....I have another server using firestarter .8.2 which is currentl;y doing my natting and firewalling. works great, been working great for a few years now. but I am upgrading all my hardware and software here at work, so thats why I upgraded to the newest firestarter for gnome 2. I did a ping from home to the external firewall ip and its getting positive response sooooo........ -----Original Message----- From: Myers, Nathan [mailto:NM...@fo...] Sent: Tuesday, October 21, 2003 10:17 AM To: 'Larry Clark'; 'Jack Bowling' Cc: fir...@li... Subject: RE: [Firestarter-user] firestarter 9.2 portforwarding don't know if this will help, but are you sure the packets are actualy getting to your external address. For example, use ethereal on the external address to make sure your data is hitting it. I had this problem, and it was because my isp didn't route certain port traffic to externals ie port(80) on home DSL lines hope this will help Nathan -----Original Message----- From: Larry Clark [mailto:net...@di...] Sent: Tuesday, October 21, 2003 12:04 PM To: 'Jack Bowling' Cc: fir...@li... Subject: RE: [Firestarter-user] firestarter 9.2 portforwarding I did a chkconfig --list and saw that iptables wasn't on, so I turned it on for the same levels as firestarter and now this is what I have: [root@mail larry]# /sbin/iptables -L -v -n | grep 2000 0 0 ACCEPT tcp -- * * 0.0.0.0/0 67.94.77.192/26 tcp dpt:2000 0 0 ACCEPT udp -- * * 0.0.0.0/0 67.94.77.192/26 udp dpt:2000 10 480 ACCEPT tcp -- * * 0.0.0.0/0 192.168.0.14 tcp dpt:2000 0 0 ACCEPT udp -- * * 0.0.0.0/0 192.168.0.14 udp dpt:2000 [root@mail larry]# /sbin/iptables -t nat -L -v -n | grep 2000 3 144 DNAT tcp -- * * 0.0.0.0/0 67.94.77.192/26 tcp dpt:2000 to:192.168.0.14:2000 0 0 DNAT udp -- * * 0.0.0.0/0 67.94.77.192/26 udp dpt:2000 to:192.168.0.14:2000 there are a few added numbers, I am not sure if that makes a difference but I tried that as well and still not forwarded to the mail server internally. -----Original Message----- From: Jack Bowling [mailto:jb...@sh...] Sent: Monday, October 20, 2003 4:14 PM To: Larry Clark Cc: fir...@li... Subject: Re: [Firestarter-user] firestarter 9.2 portforwarding On Mon, Oct 20, 2003 at 11:26:09AM -0700, Larry Clark wrote: > I have just installed FS .9.2 on redhat 9.x and I have used the > portforwarding utility to forward outside traffic on port 2000 to port 2000 > on my internal mail server. however it is not working, I can't get to my > internal machine. I have been using FS for a few years now and this is the > first time i have tried the version for gnome 2.0. any ideas? thanks. Hi, Larry. Please post the output of the following command to the list: /sbin/iptables -L -v -n | grep 2000 /sbin/iptables -t nat -L -v -n | grep 2000 -- Jack Bowling mailto: jb...@sh... ------------------------------------------------------- This SF.net email is sponsored by OSDN developer relations Here's your chance to show off your extensive product knowledge We want to know what you know. Tell us and you have a chance to win $100 http://www.zoomerang.com/survey.zgi?HRPT1X3RYQNC5V4MLNSV3E54 _______________________________________________ Firestarter-user mailing list Fir...@li... https://lists.sourceforge.net/lists/listinfo/firestarter-user |