LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-18-2005, 11:52 AM   #1
boarde
LQ Newbie
 
Registered: Feb 2005
Posts: 1

Rep: Reputation: 0
SuSEfirewall


I'm new to firewalls, so please go easy.

The external device on my server is 192.168.1.2 and connects to the Internet through a DSL (router on the same network). The internal device is on a private network. The Squid server happily retrieves web pages when the firewall is turned off.

I will need to masquerade but just want to configure the firewall to allow a client to retrieve web pages via Squid for starters. I cannot do an nslookup from the command line with the firewall running. I do not have DNS running, I am using my ISP's DNS servers, which are in resolv.conf.

I have followed the simple procedures in howto's and the Suse admin guide with no joy. The more I read the more confusing it seems to become.

I have the following paremeters set in the SuSEfirewall config file:

FW_QUICKMODE="no"
FW_DEV_EXT="eth0"
FW_DEV_INT="eth1"
FW_ROUTE="no"
FW_MASQUERADE="no"
FW_MASQ_DEV="$FW_DEV_EXT"
FW_MASQ_NETS="0/0"
FW_PROTECT_FROM_INTERNAL="yes"
FW_AUTOPROTECT_SERVICES="yes"
FW_SERVICES_EXT_TCP="domain http https 8080"
FW_SERVICES_EXT_UDP="domain"
FW_SERVICES_EXT_IP=""
FW_TRUSTED_NETS=""
FW_ALLOW_INCOMING_HIGHPORTS_TCP="yes"
FW_ALLOW_INCOMING_HIGHPORTS_UDP="yes"
FW_FORWARD=""
FW_FORWARD_MASQ=""
FW_REDIRECT="177.10.7.0/24,192.168.1.0/24,tcp,80,8080"
FW_STOP_KEEP_ROUTING_STATE="no"

Help on this would be greatly appreciated.
 
Old 02-26-2005, 02:44 PM   #2
Caeda
Senior Member
 
Registered: Jul 2003
Location: Indiana
Distribution: Suse 6.0+, Mandrake 5.0-10.0, Redhat 6.0-9.0, Gentoo 1.2+, Gnoppix, Knoppix, Sabayon, Ubuntu 5.04+
Posts: 1,811

Rep: Reputation: 45
The best help would be to stop editing the text file, and just run the graphical config. You should be able to open up the proper ports using it.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
using ftp behind susefirewall whf SUSE / openSUSE 4 08-28-2005 04:39 PM
SuSEfirewall after 9.0 to 9.2 upgrade brundles SUSE / openSUSE 0 03-10-2005 05:53 PM
SuSEfirewall and forwarding problems Dewar Linux - Networking 4 04-29-2004 11:45 AM
SuSEFirewall and Internal Port Routing activematrix Linux - Security 2 10-09-2003 06:59 PM
How to use SuSEFirewall marsonist Linux - Software 3 10-16-2002 11:58 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:59 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration