LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-04-2002, 10:19 PM   #1
azure_ss
LQ Newbie
 
Registered: Aug 2002
Posts: 11

Rep: Reputation: 0
ip restrition question


hi,all
I really want to know in redhat 7.1,how many places can I define rules to ban some ip to access my service?
Actually,I have a database service running on my linux box and it can only be accessed by the machines in the same subnet.
I do check my hosts.allow file and sure that it's fine.
And I stop ipchains and iptables.
I also check xinetd but it's a default setting there,in my understanding,xinetd is just used to control some standard service of the system like ftp,telnet.I don't know for a database service started manually,should I add a configure file there.
Besides the three places,any other files can control the ip access?
Assume that the upper level firewall is fine for any connection to my port.
Thank you so much for your reply.
 
Old 10-04-2002, 10:29 PM   #2
DavidPhillips
LQ Guru
 
Registered: Jun 2001
Location: South Alabama
Distribution: Fedora / RedHat / SuSE
Posts: 7,163

Rep: Reputation: 58
well the service needs to be listening / connected to a port on the external interface for someone to connect to it.

If you let us know what the service is and give a few details about the type of connection you have we could try to help.

What software is it? How do the clients connect on the lan?
 
Old 10-04-2002, 10:40 PM   #3
azure_ss
LQ Newbie
 
Registered: Aug 2002
Posts: 11

Original Poster
Rep: Reputation: 0
hi,it's db2 service listenning on port 50002 and 1678.
Actually,I can access the port in my subnet,say 126.126.10.X,but I can't access it from 126.126.X.X.I don't think it's the upper level firewall's restrition though.So wanna to check what's wrong in my linux box.
 
Old 10-04-2002, 11:22 PM   #4
DavidPhillips
LQ Guru
 
Registered: Jun 2001
Location: South Alabama
Distribution: Fedora / RedHat / SuSE
Posts: 7,163

Rep: Reputation: 58
thats maybe due to the netmask, if it's not in your network and there is no rout e to it in your routing table, then it will use the default route.
 
Old 10-05-2002, 11:03 AM   #5
azure_ss
LQ Newbie
 
Registered: Aug 2002
Posts: 11

Original Poster
Rep: Reputation: 0
yes,they r not in the same subnet.
say,the server is 126.126.10.X/255.255.255.0
the client is 126.126.2.X/255.255.255.255

What's the default setting of the routing?Can you show me the detail configuration for the routing table in my case?
Thanks
 
Old 10-05-2002, 11:35 AM   #6
someuser
LQ Newbie
 
Registered: Oct 2002
Posts: 8

Rep: Reputation: 0
im not so firm but i'll try it ...

add this line to the gateway of your client subnet

route -n add 126.126.10.0 gw_ip_to_subnet

(gw_ip_to_subnet = 126.126.2.1 in most cases - it has to be the machine which has access to the 126.126.10.x subnet!)

this should work...
 
Old 10-05-2002, 11:42 AM   #7
azure_ss
LQ Newbie
 
Registered: Aug 2002
Posts: 11

Original Poster
Rep: Reputation: 0
hmm,I think that's not I want.
Actually my client machine can access the http service running on the same server of the db2 service.But just can't connet to the db2 service.wierd,huh?
 
Old 10-05-2002, 10:11 PM   #8
DavidPhillips
LQ Guru
 
Registered: Jun 2001
Location: South Alabama
Distribution: Fedora / RedHat / SuSE
Posts: 7,163

Rep: Reputation: 58
try running tcpdump and see what traffic you have.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Question, Apples Contribution to Open Source + MacOs file structure question Higgy3k Other *NIX 5 07-25-2005 04:23 AM
Not your regular GRUB question - just a short question for a fried MBR!! ziphem Linux - General 3 01-31-2005 01:51 PM
login prompt question & kde scheme question JustinCoyan Slackware 2 06-09-2004 02:02 PM
samba smb.config question (quick question) TheDOGG Linux - Networking 1 03-02-2004 07:19 AM
Lilo/kernel question & font question phek Linux - General 9 09-18-2001 12:20 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 12:17 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration