LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-08-2003, 04:41 PM   #1
sovtek
LQ Newbie
 
Registered: Sep 2003
Posts: 1

Rep: Reputation: 0
cannot connect up2date through firewall


Bit of a newbie when comes to ipfwadm/ipchains.
I have a RH 7.1 box I'm trying to use up2date on. There is a firewall (RH 5 something or other) between it and the outside world.
When trying to run up2date i can't connect and eventually times out.
Tried to enable ssl port on both firewall and linux box. Doesn't seem to allow to establish connection. I'm probably doing something wrong as I'm not too familiar with ipfwadm/ipchains and firewalling rules.

Netstat -a -p shows
tcp 0 1 mybox:37408 xmlrpc.rhn.redhat.c:443 SYN_SENT 27614/python

(ie. never establishes connection)

Not sure if firewall is preventing connection or ipchains on the box itself.

firewall:
ipfwadm -F -l
IP firewall forward rules, default policy: deny
type prot source destination ports
acc tcp my.ip.range/24 anywhere any -> ftp-data,ftp,ssh,smtp,http,domain,pop-3,auth,1080,3128
acc tcp anywhere my.ip.range/24 any -> ftp-data,ftp,ssh,smtp,http,domain,pop-3,auth,1080,3128
acc udp my.ip.range/24 anywhere any -> domain
acc udp anywhere my.ip.range/24 any -> domain
acc icmp my.ip.range/24 anywhere any
acc tcp my.ip.range/24 0.0.0.0 any -> 443
acc tcp 0.0.0.0 my.ip.range/24 any -> 443

linux RH 7.1 box:
ipchains -L
Chain input (policy ACCEPT):
target prot opt source destination ports
ACCEPT udp ------ ns2.esat.net anywhere domain -> any
ACCEPT udp ------ ns.isi.ie anywhere domain -> any
ACCEPT udp ------ my.box anywhere domain -> any
ACCEPT tcp -y---- anywhere anywhere any -> smtp
ACCEPT tcp -y---- anywhere anywhere any -> http
ACCEPT tcp -y---- anywhere anywhere any -> ftp
ACCEPT tcp -y---- anywhere anywhere any -> ssh
ACCEPT tcp -y---- anywhere anywhere any -> 443
ACCEPT udp ------ anywhere anywhere 67:68 -> 67:68
ACCEPT udp ------ anywhere anywhere 67:68 -> 67:68
ACCEPT all ------ anywhere anywhere n/a
ACCEPT all ------ anywhere anywhere n/a
REJECT tcp -y---- anywhere anywhere any -> 0:1023
REJECT tcp -y---- anywhere anywhere any -> 2049
REJECT udp ------ anywhere anywhere any -> 0:1023
REJECT udp ------ anywhere anywhere any -> 2049
REJECT tcp -y---- anywhere anywhere any -> x11:6009
REJECT tcp -y---- anywhere anywhere any -> 7100
Chain forward (policy ACCEPT):
Chain output (policy ACCEPT):
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
up2date won't connect just freezes the_rhino Fedora 5 10-09-2004 08:39 AM
Firewall doesn't let MSN Connect in GAIM-0.77. rhawi Linux - Security 1 05-09-2004 11:45 AM
RedHat 9: Can't connect with up2date Ilushka Red Hat 3 03-11-2004 08:48 AM
How do I connect dual nics in firewall to the gateway? scoobadiver Linux - Newbie 3 01-12-2004 05:03 PM
gaim cannot connect behind firewall... i think m9dhatter Linux - Software 2 07-22-2003 12:41 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 04:40 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration