LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-28-2006, 09:19 PM   #1
elliotfuller
Member
 
Registered: Apr 2005
Location: San Francisco, CA
Distribution: Ubuntu, Debian
Posts: 83

Rep: Reputation: 15
Port Scanning and my Firewall


Server: SuSE Linux 9.3
Client: Ubuntu Linux 5.10

I am trying to open up port 1194 so that I can set up a VPN connection. I have a server thats behind a router that I want to be able to connect into via an encrypted tunnel.

I have set up the router to forward port 22 TCP/UDP to the IP of the server for SSH login. I have also installed SSH on my server, and opened up SSH port 22 in the firewall on my server. I can connect easily through a standard SSH connection, and everything works great. When I run a port scan on the IP of my router (from an outside computer) it shows port 22 as being open. I am very happy with this set up.

I have set up the router to forward port 1194 TCP/UDP to the IP of the server for a VPN connection. I have also installed openvpn on my server, and opened up openvpn port 1194 in the firewall on my server. I cannot connect through my openvpn connection. When I run a port scan on the IP of my router it shows only only port 22 as being open. Port 1194 does not appear. I am very confused by this set up.

Here is my question: In order for a port scan to detect an open port, does it need to recieve a response from a computer? In other words, does port scanning check to see if there is a hole in the router to get through, or does it check to see if there is a hole in the router by getting a response from a computer? I am trying to figure out if it is my router that is causing the problem or my computer.

Final Note: I have taken down the firewall running on SuSE completely to see if that was the problem. However, it makes no difference whether the firewall is up or not. Only port 22 is shown during a port scan!
 
Old 04-28-2006, 09:59 PM   #2
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682
Try running a port scan on the firewall computer (SuSE) targeting the inside host (Ubuntu). That will tell you if the vpn port is open on the Ubuntu client.

For your general question, on port scans, if you look in the man page for nmap, you will see quit a number of scans that you can try, and the answer to your question depends on the type of scan you perform. Your firewall or the Ubuntu host could be configured to either reject or to drop requests.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Port scanning? muppski Linux - Security 6 07-01-2005 05:44 PM
Mail server port-scanning my firewall? bleunuit Linux - Networking 2 11-24-2004 05:14 PM
Mail Scanning on the Firewall? zymurgist Linux - Networking 6 09-30-2003 01:01 PM
port scanning johncla Linux - Networking 1 05-02-2001 03:09 AM
Port Scanning tfrye Linux - Security 2 03-24-2001 09:43 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:03 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration