doronunu 06-04-2006 10:44 AM

iptables port 80 rule Q
i want everything that comming in, iptables will DROP
and ACCEPT only things that i told him by rules.
the problem is that my port 80's rules doesnt works and i dont know why.
i cant my site.

those r the rules i made for port 80 :


iptables -A INPUT -p tcp --dport www -j ACCEPT
iptables -A INPUT -p udp --dport www -j ACCEPT
iptables -A INPUT -p --syn --dport www -j ACCEPT

my OUTPUT policy is ACCEPT by the way.

Brian1 06-04-2006 12:48 PM

What is the rest of your iptables script like. What you have should work.
How are you checking?
Have you gone to and external location and tried it?
Some providers block common ports to stop users from running servers.
Goto to see if the port is open.
Is this connected directly to the internet? or a router in between?


doronunu 06-04-2006 01:09 PM

the port is open its on home and i can reach him if the iptables is flush and the policy set to accept.
i have only one more rule for ssh

osor 06-04-2006 06:55 PM

What if all you do is flush, set policy to deny and then add the one rule. If it starts working, that means there's something else catching your packets before it can get to the last one.

