LinuxQuestions.org
Help answer threads with 0 replies.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Closed Thread
  Search this Thread
Old 11-12-2009, 03:18 PM   #1
moekad
Member
 
Registered: Feb 2009
Posts: 64

Rep: Reputation: 15
iptables


hey
need help
actually i read many sites about iptables but i need to know this mechanism of :
-i know when i SYN (open page) it go via output, then SYN-ACK (Reply page) At INPUT. Right
-let say i have server and clients so why i when i do:
1) on OUTPUT :iptables -A OUTPUT -m state --state NEW,ESTABLISHED -j ACCEPT
2) on INPUT: iptables -A OUTPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
3) on FORWARD: iptables -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT
( all clients can open anything regardless if i DROP or Decline for ex: i want specific ports on forward to only open) why not happen!
my theory is that clients when they open page ( it go from FORWARD to OUTPUT then page reply to INPUT and forward it to FORWARD chain) can someone tell me how this happen and if i'm wrong! really, i read many sites and didn't got it exactly this one!
Thanks alot for your help , and hope someone can help me!

NOTE: All Policies Are in DROP Mode (The INPUT,OUTPUT,And The FORWARD CHAIN)

Take Care...
 
Old 11-12-2009, 04:15 PM   #2
Tinkster
Moderator
 
Registered: Apr 2002
Location: in a fallen world
Distribution: slackware by choice, others too :} ... android.
Posts: 23,067
Blog Entries: 11

Rep: Reputation: 910Reputation: 910Reputation: 910Reputation: 910Reputation: 910Reputation: 910Reputation: 910Reputation: 910
Please post your thread in only one forum. Posting a single thread in the most relevant forum will make it easier for members to help you and will keep the discussion in one place. This thread is being closed because it is a duplicate.

http://www.linuxquestions.org/questi...tables-768740/
 
  


Closed Thread


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
On what basis CHAIN integer values are generated in IPtables under iptables file? haariseshu Linux - Server 3 11-05-2009 04:25 AM
[SOLVED] Rather huge IPtables chain, iptables: Memory allocation problem. Gangrif Linux - Networking 10 09-11-2009 03:30 PM
iptables v1.2.9: Unknown arg `/sbin/iptables' Try `iptables -h' or 'iptables --help' Niceman2005 Linux - Security 4 12-29-2005 08:20 PM
IPtables Log Analyzer from http://www.gege.org/iptables/ brainlego Linux - Software 0 08-11-2003 06:08 AM
My iptables script is /etc/sysconfig/iptables. How do i make this baby execute on boo ForumKid Linux - General 3 01-22-2002 07:36 AM


All times are GMT -5. The time now is 09:05 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration