From: Tom E. <te...@sh...> - 2003-01-21 00:02:19
|
--On Sunday, January 19, 2003 6:07 PM +0100 stephane salettes <ste...@ai...> wrote: > hi have a little problem of configuration > > I have a network with a server (192.168.0.1) and other pc one is > 192.168.0.20 > > i want to reject all output from 192.168.0.20 for port 4000 (tcp and > udp) /etc/shorewall/rules: REJECT loc:192.168.0.20 all tcp 4000 REJECT loc:192.168.0.20 all udp 4000 > > i want accept incoming packet on port 4000 but reject outgoing packet on > port 4000 >From where? The internet? If so: DNAT net loc:192.168.0.20 tcp 4000 DNAT net loc:192.168.0.20 udp 4000 -Tom -- Tom Eastep \ Shorewall - iptables made easy AIM: teastep \ http://www.shorewall.net ICQ: #60745924 \ te...@sh... |