OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Naga Suresh B (torvalds_at_addr.com)
Date: Tue Aug 13 2002 - 03:06:30 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hai,
    Thanks for u r info,

    This is the output of my ipfw list command, Plz check this and help me out
    in solving my problem.

    00050 divert 8668 ip from any to any via rl1
    00100 allow ip from any to any via lo0
    00200 deny ip from any to 127.0.0.0/8
    00300 deny ip from 127.0.0.0/8 to any
    00400 deny ip from any to 64.4.12.0/22 via rl1
    65000 allow ip from any to any
    65100 allow tcp from any to any 5802 via rl1
    65200 allow tcp from any to any 5502 via rl1
    65300 allow tcp from any to any 5902 via rl1
    65500 divert 8668 ip from any to any via rl1
    65500 allow udp from any to any 33434-33523 out xmit rl1
    65500 allow udp from any to any 33434-33523 via rl1
    65535 deny ip from any to any
    Regards,
    B.Naga Suresh.
    ----- Original Message -----
    From: "Peter Kadau" <peter.kadautuebingen.mpg.de>
    To: "Naga Suresh B" <torvaldsaddr.com>
    Sent: Tuesday, August 13, 2002 1:14 PM
    Subject: Re: Problem in port forwarding

    > Hi !
    >
    > Sorry for the private answer, but this question
    > doesn't belong to that list AFAIK.
    >
    > > rules enabled. I am doing portforwarding for the following ports 5800
    > > 5500
    > > 5900 using natd I redirected the ports, by using external ip from my
    > > internal network I am not able to access that application But
    > > externally I
    > > am able to access that application by using external IP.
    >
    > That's exactly as it should behave.
    > Change your DNS, not your rules.
    > Make your service from inside resolve to another IP than from outside.
    > It works perfectly at our site.
    > You will need an internal DNS though...
    >
    > HTH
    > Peter

    To Unsubscribe: send mail to majordomoFreeBSD.org
    with "unsubscribe freebsd-security" in the body of the message