Not sure I understand the security breach issue?
Concerning your connection, have you cleared the OUTPUT packet on dynamic ports for establish connection. In other words, the comamdn allows client to talk to the server, but have you cleared the server to answer back?
Sorry, but I dont remenber the exact command, been some time since I configured iptable.
Hope this helps!
|