OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [suse-security] Firewall denying outgoing connections?

From: Camaleón (noelamacgmail.com)
Date: Fri Apr 14 2006 - 10:33:10 CDT


2006/4/14, Carlos E. R.:

> Apr 14 17:04:37 nimrodel kernel: SFW2-OUT-ERROR IN= OUT=eth0
> SRC=192.168.1.12 DST=85.85.72.60 LEN=40 TOS=0x08 PREC=0x00 TTL=64 ID=54228
> DF PROTO=TCP SPT=6881 DPT=4712 WINDOW=32767 RES=0x00 ACK URGP=0

> Why am I denied outgoing access to some ports now and then? These seem to
> be triggered by bttorrent downloading the RC1, but I also get some to port
> 80. At the moment, dozens like the log entry above.
>
> port 6881 is allowed entry in the config:
>
> FW_SERVICES_EXT_TCP="6881:6889"

Carlos,

Just a thought, but check your firewall's rules for outgoing packages.
The rule you said before is defined as follows:

FW_SERVICES_EXT_TCP
Which TCP services _on the firewall_ should be accessible from
untrusted networks.

So this rule seems to be used to allow or deny external sites
accessing to local computer.

Greetings,

--
Camaleón

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here