LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-11-2009, 02:46 AM   #1
slackaddict
Member
 
Registered: Nov 2004
Location: Aotearoa
Distribution: Slack, Ubuntu
Posts: 92

Rep: Reputation: 15
Cannot open any ports to outside - is it router, operating system or ISP?


Hi

I've installed a Slackware box at work which I can access with SSH from the local network, but need to SSH into it from home.

There is a Thomson TG585v7 ADSL modem/router/wireless all-in-one connected to the phone line. Then there is an SMC-EZ1024DT switch plugged into ethernet port 1 on the Thomson.

I have disabled the Firewall on the Thomson and disabled any software firewalls. But whenever I try (from work) the ShieldsUP port probe at www.grc.com I get a perfect "TruStealth" rating.

I have tried plugging straight into the Thomson, using different workstations on the network, even unplugging the switch completely - still can't get a single port to show as open.

Am I missing something? Is it possible the ISP blocks traffic before it even gets here? What else can I try? (I've done this at home and didn't have any problems...)
 
Old 09-11-2009, 03:12 AM   #2
mdg
Member
 
Registered: Sep 2003
Distribution: Slackware
Posts: 626

Rep: Reputation: 38
It's possible that your workplace is running a firewall on their internal network. Every connection to or from your work would have to bypass it.
 
Old 09-11-2009, 03:31 AM   #3
slackaddict
Member
 
Registered: Nov 2004
Location: Aotearoa
Distribution: Slack, Ubuntu
Posts: 92

Original Poster
Rep: Reputation: 15
Its possible, but I don't know where it could be.

I've tried disconnecting virtually everything from the (small) network for testing - no luck so far.
 
Old 09-11-2009, 05:12 AM   #4
slackaddict
Member
 
Registered: Nov 2004
Location: Aotearoa
Distribution: Slack, Ubuntu
Posts: 92

Original Poster
Rep: Reputation: 15
Okay, I've made some progress. I have managed to open up port 80 and access the web server on my laptop. But I tried the same thing with SSH and port 22 still shows as 'stealth'.

I'll keep trying things...
 
Old 09-11-2009, 05:24 AM   #5
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682
Is the router a NAT router? You need to forward port 22 to your slackware machine. Otherwise the router will not know which host to forward it to and simply drop the connection. If you try to ssh to the router without port forwarding, you are actually trying to log into an ssh service running on the router itself.

Also make sure that the firewall on the slackware computer has port 22 open. Another thing is to verify that the ssh daemon is running. If you can ssh in on another machine on the lan, you know that it is.

If your router can forward a port to another port, consider using a higher order port, and having it forwarded to your slackware's IP at port 22. E.G. forward port 1025 -> slackware IP:22. Using a non-standard port for ssh will reduce the number of script kiddie brute force attacks against ssh. Also be sure to read the manpage for sshd_config. There are several options you want to make ssh more secure.

Last edited by jschiwal; 09-11-2009 at 05:27 AM.
 
Old 09-11-2009, 06:23 AM   #6
slackaddict
Member
 
Registered: Nov 2004
Location: Aotearoa
Distribution: Slack, Ubuntu
Posts: 92

Original Poster
Rep: Reputation: 15
The router does have NAT abilities, but I think it's designed as a home router. In the web interface it has things like "Game and Application Sharing", which is how I got the web server to be visible from outside. I tried setting up SSH the same way, but the port still shows as stealth.

SSH daemon is running, I can log in from a laptop on the LAN.

I'll keep trying things in the router web interface...
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
router to use for vpn, red hat operating system, ftp, solaris workstation Ritacon Linux - Newbie 1 10-24-2008 08:21 AM
Testing open ports, behind a router sekelsenmat Linux - Networking 7 06-28-2005 08:50 AM
How to open ports on D-Link router TazG Linux - Hardware 6 07-20-2004 03:42 PM
Stealthing Open Router Ports ghight Linux - Security 8 02-19-2004 10:05 AM
open ports on a router? riddlebox80 Linux - Hardware 3 04-21-2003 08:41 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 06:26 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration