LinuxQuestions.org
Support LQ: Use code LQ3 and save $3 on Domain Registration
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 01-17-2005, 08:34 AM   #1
cannabuz
LQ Newbie
 
Registered: Jan 2005
Posts: 1

Rep: Reputation: 0
SuSE 9.2 - firewall blocks internal network


Hi

I just upgraded to SuSE 9.2. I'm configuring my network, which looks like this:


(INet) -> ADSL -> 802.11g ))) (((Switch - - - - - - - - - - - -

Default Router: x.x.x.1

Linux has eth0 and eth1 (plugged into the switch)

Internal network has eth2 (plugged into the switch)


My SuSE 9.2 PC has two cards, eth0 and eth1. Eth0 is configured as the 'external' interface, while eth1 is configured as the internal interface.

What I would like to do is to configure SuSEfirewall2 so that it correctly blocks anything coming from the internet, but port 22. Also, internally, the linux box must serve samba and NFS.

The updated network service modules in YaST give you theoption to open the firewall port on either both devices, or just the one you want (I want the internal). This is not reflected to the network, basically:

1. If in YaST firewall module I open teh ports for smb, both the internal and external devices accept connections -> not good

2. If in YaST module for samba I open the ports for smb in the internal device, it doesn't work (nmap confirms) -> not good (Btw, with this configuration, in the firewall mode smb ports are *not* selected, even tho in the appropriate modules are).

my SuSEfirewall2 conf has FW_DEV_EXT and _INT correct, quickmode off, protect all running services and from internal network off:

(....)

## Type: string
#
# see comments for FW_SERVICES_EXT_TCP
FW_SERVICES_INT_TCP=" microsoft-ds netbios-dgm netbios-ns netbios-ssn"

Am I missing something?

(no, to create my script directly is not an option for me right now)

Basically, how to disable the firewall for the internal network completely, and leave on the external interface only?

Many Thanks
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Firewall blocks Samba? IchBin Linux - Networking 1 06-11-2005 05:21 PM
Encore Router Firewall Blocks P2P rickh Linux - Hardware 0 05-02-2005 12:14 AM
firewall blocks network printer suse 9.2 cups thegreatgatsby Suse/Novell 15 01-25-2005 09:41 PM
Internal Firewall/Gateway problems on complex home network WarmFlatSprite Linux - Wireless Networking 3 02-19-2004 08:33 PM
SuSe 7.0 not communicating with Network (internal or external) jmnovak Linux - Networking 1 02-27-2002 11:52 AM


All times are GMT -5. The time now is 09:39 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration