LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 09-13-2004, 08:24 AM   #1
happy001
LQ Newbie
 
Registered: Aug 2004
Location: oklahoma
Posts: 2

Rep: Reputation: 0
port fowarding for file sharing


I curently have Mandrake linux 10 and webmin installed I can not for the life of me get port fowardign to work using webmin and the shorewall modual.I dont know what else to do so here. i am im pleading mercy that some one can help me. here is what i want to do i curently have a linux box acting as a roughter/proxy and 4 windows systems one system has emule on it and its configured to use port 4662tcp and 4800 udp on the system with ip of 192.168.1.251 so im wanting to get the roughter to foward to that port so emle will work but so far all i have done in gohn in circles installed every other firewall for linux i could find and now im back at my defult settign (and btw i thing next time i buy linux im gettign the dvd cause swaping the 8 cd's around sucks) iv reloaded linux so many times im just sick of its and at my wits end any one please help. (BTW i know nuthing abought the scripts and this is my first linux server and im building up a learning curve but its going slow.)
 
Old 09-13-2004, 08:45 AM   #2
r0b0
Member
 
Registered: Aug 2004
Location: Europe
Posts: 608

Rep: Reputation: 50
Instead of installing every other firewall and "reloading linux", maybe you could try to learn something about how the firewalls actually work. What you are trying to achieve is not that difficult, I bet with a good iptables tutorial, you'll be done in an hour or two.
 
Old 09-13-2004, 09:00 AM   #3
happy001
LQ Newbie
 
Registered: Aug 2004
Location: oklahoma
Posts: 2

Original Poster
Rep: Reputation: 0
Iv been tinkering but still no luck. I'd read a good tutorial if i could find one that didnt confuse me. Im still learnign linux, it is a steep learning curve from windows, and i mostly learn from doing. If i mess it up to bad i have been reloading it and trying again. The reason Iv installed the other firewalls is a wanted to see if there was a beter option than what came with linux i was using firestarter for a while and had it working but wasnt to impressed with it, as the interface kept locking up and not fully working right. I like linux and im having fun, but its just kinda flusteriating. 99% of the documation iv found asums that you know a bunch abought linux and loose me quickly. i like the feel of linux but just wish i knew more abought it. When i start digging in to scripts im afraid ill fubar it and have to reload it again and hear the wife yell at me. ( nathan what did you do to the internet why cant you just leave it alone. Then i have to try to explain that it dont do what i want it to.) but any ways here is a config test maby you can make sence of it.
thanks
Loading /usr/share/shorewall/functions...
Processing /etc/shorewall/params ...
Processing /etc/shorewall/shorewall.conf...



Notice: The 'check' command is unsupported and problem
reports complaining about errors that it didn't catch
will not be accepted

Shorewall has detected the following iptables/netfilter capabilities:
NAT: Available
Packet Mangling: Available
Multi-port Match: Available
Connection Tracking Match: Available
Verifying Configuration...
Loading Modules...
Determining Zones...
Zones: net loc
Validating interfaces file...
Validating hosts file...
Determining Hosts in Zones...
Net Zone: eth0:0.0.0.0/0
Local Zone: eth1:0.0.0.0/0
Validating policy file...
Policy for loc to net is ACCEPT using chain loc2net
Policy for fw to net is ACCEPT using chain fw2net
Policy for net to loc is DROP using chain net2all
Policy for net to fw is DROP using chain net2all
Policy for loc to fw is REJECT using chain all2all
Policy for fw to loc is REJECT using chain all2all
Pre-validating Actions...
Pre-processing /usr/share/shorewall/action.DropSMB...
Pre-processing /usr/share/shorewall/action.RejectSMB...
Pre-processing /usr/share/shorewall/action.DropUPnP...
Pre-processing /usr/share/shorewall/action.RejectAuth...
Pre-processing /usr/share/shorewall/action.DropPing...
Pre-processing /usr/share/shorewall/action.DropDNSrep...
Pre-processing /usr/share/shorewall/action.AllowPing...
Pre-processing /usr/share/shorewall/action.AllowFTP...
Pre-processing /usr/share/shorewall/action.AllowDNS...
Pre-processing /usr/share/shorewall/action.AllowSSH...
Pre-processing /usr/share/shorewall/action.AllowWeb...
Pre-processing /usr/share/shorewall/action.AllowSMB...
Pre-processing /usr/share/shorewall/action.AllowAuth...
Pre-processing /usr/share/shorewall/action.AllowSMTP...
Pre-processing /usr/share/shorewall/action.AllowPOP3...
Pre-processing /usr/share/shorewall/action.AllowIMAP...
Pre-processing /usr/share/shorewall/action.AllowTelnet...
Pre-processing /usr/share/shorewall/action.AllowVNC...
Pre-processing /usr/share/shorewall/action.AllowVNCL...
Pre-processing /usr/share/shorewall/action.AllowNTP...
Pre-processing /usr/share/shorewall/action.AllowRdate...
Pre-processing /usr/share/shorewall/action.AllowNNTP...
Pre-processing /usr/share/shorewall/action.AllowTrcrt...
Pre-processing /usr/share/shorewall/action.AllowSNMP...
Pre-processing /usr/share/shorewall/action.AllowPCA...
Pre-processing /usr/share/shorewall/action.Drop...
Pre-processing /usr/share/shorewall/action.Reject...
Validating rules file...
Rule "REDIRECT loc 3128 tcp www -" checked.
Rule "ACCEPT fw net tcp www" checked.
Rule "DNAT:debug net loc:192.168.1.251 tcp 4662 4662" checked.
Rule "DNAT net loc:192.168.1.251 udp 4800 4800 68.12.107.17" checked.
Validating Actions...
Processing /usr/share/shorewall/action.Drop...
Rule "RejectAuth" checked.
Rule "dropBcast" checked.
Rule "DropSMB" checked.
Rule "DropUPnP" checked.
Rule "dropNonSyn" checked.
Rule "DropDNSrep" checked.
Processing /usr/share/shorewall/action.Reject...
Rule "RejectAuth" checked.
Rule "dropBcast" checked.
Rule "RejectSMB" checked.
Rule "DropUPnP" checked.
Rule "dropNonSyn" checked.
Rule "DropDNSrep" checked.
Processing /usr/share/shorewall/action.RejectAuth...
Rule "REJECT - - tcp 113" checked.
Processing /usr/share/shorewall/action.DropSMB...
Rule "DROP - - udp 135" checked.
Rule "DROP - - udp 137:139" checked.
Rule "DROP - - udp 445" checked.
Rule "DROP - - tcp 135" checked.
Rule "DROP - - tcp 139" checked.
Rule "DROP - - tcp 445" checked.
Processing /usr/share/shorewall/action.DropUPnP...
Rule "DROP - - udp 1900" checked.
Processing /usr/share/shorewall/action.DropDNSrep...
Rule "DROP - - udp - 53" checked.
Processing /usr/share/shorewall/action.RejectSMB...
Rule "REJECT - - udp 135" checked.
Rule "REJECT - - udp 137:139" checked.
Rule "REJECT - - udp 445" checked.
Rule "REJECT - - tcp 135" checked.
Rule "REJECT - - tcp 139" checked.
Rule "REJECT - - tcp 445" checked.
Configuration Validated

Notice: The 'check' command is unsupported and problem
reports complaining about errors that it didn't catch
will not be accepted

Last edited by happy001; 09-13-2004 at 09:04 AM.
 
Old 09-13-2004, 01:54 PM   #4
Cerbere
Member
 
Registered: Dec 2002
Location: California
Distribution: Slackware & LFS
Posts: 799

Rep: Reputation: 33
Hey Nathan, welcome to LQ.org!

I'm afraid I can't help you specifically with your firewalling problem, but I have a suggestion which may take some of the frustration out of learning linux generally. Check out the RUTE Users Tutorial and Exposition. It's perhaps the most comprehensive guide for learning linux from the ground up. If nothing else, this guide can help you to understand what they're talking about in those iptables tutorials.

Enjoy!
--- Cerbere

[edit] My advice is to click on the 'download HTML' link near the top of the page, then extract that file on your local drive so you can read it offline. [/edit]

Last edited by Cerbere; 09-13-2004 at 01:56 PM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
squid port fowarding SiLiCoN Linux - Security 3 06-24-2005 07:42 PM
Port Fowarding zaicheke *BSD 9 10-25-2004 06:05 PM
Fowarding port 80 ? Drogo Linux - Networking 13 05-28-2003 03:16 AM
Port Fowarding. Arisen Sun Linux - Security 1 05-23-2003 06:48 PM
SSH port fowarding magyartoth Linux - Networking 10 05-01-2002 02:27 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:16 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration