firewall


Autor: eMte (michast2_at_wp.pl)
Data: nie 06 paź 2002 - 01:40:17 CEST


Mam taki problem! Ustawielem tak plik firewalla:
#!/bin/bash
#/etc/rc.d/rc.firewall
#FIREWALL, author: A. M. Krawczyk
#eth0=10.1.1.1
#ppp0=moj_ip
ipchains -F input
ipchains -F output
ipchains -F forward
ipchains -P input ACCEPT
ipchains -P output ACCEPT
ipchains -P forward DENY
ipchains -A input -p tcp -s 0/0 1024:65535 -d moj_ip/25 1:65535 -j DENY -i ppp0
#FTP-DATA
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 20 -j ACCEPT -i ppp0
#FTP
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 21 -j ACCEPT -i ppp0
#SSH
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 22 -j ACCEPT -i ppp0
#SMTP-MAIL
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 25 -j ACCEPT -i ppp0
#NAMESERVER
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 53 -j ACCEPT -i ppp0
#HTTP
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 80 -j ACCEPT -i ppp0
#POP3-MAIL
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 110 -j ACCEPT -i ppp0
#AUTH
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 113 -j ACCEPT -i ppp0
#ICQ
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 4000 -j ACCEPT -i ppp0
#IRC
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 6665:6667 -j ACCEPT -i ppp0
#FTP-TRANSFERING
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 1024:6000 -j ACCEPT -i ppp0
#TELNET
ipchains -I input -p tcp -s 0/0 1024:65535 -d moj_ip/25 23 -j DENY -i ppp0
#FORWADING
echo "Starting FORWARDING IPv.4"
ipchains -A forward -i ppp0 -j MASQ -s 10.1.1.0/255.255.255.0 -d 0.0.0.0/0
echo 1 >/proc/sys/net/ipv4/ip_forward
#PING-DEATH
echo 1>/proc/sys/net/ipv4/icmp_echo_ignore_all
#HTTP-PROXY
ipchains -A input -p tcp -s 10.1.1.0/255.255.255.0 -d 0.0.0.0/0 80 -j REDIRECT 8080

I jak go uruchamiam to mi wywala takie cos:
ipchains: No chain by that name
ipchains: No chain by that name
ipchains: No chain by that name
' for -P: Invalid policy `ACCEPT
Try `ipchains -h' or 'ipchains --help' for more information.
' for -P: Invalid policy `ACCEPT
Try `ipchains -h' or 'ipchains --help' for more information.
' for -P: Invalid policy `DENY
Try `ipchains -h' or 'ipchains --help' for more information.
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
' (No aliases, :, ! or *).n interface `ppp0
Starting FORWARDING IPv.4
' specifiednvalid mask `0
Try `ipchains -h' or 'ipchains --help' for more information.
: No such file or directoryipv4/icmp_echo_ignore_all
' specifiednvalid port/service `8080
Try `ipchains -h' or 'ipchains --help' for more information.
: command not found
: command not found
: command not found
: command not found

Co to oznacza? Nie moge ustawic firewalla? Coś mi brakuje? Moze jajko nie jest do tego skonfigurowane?



To archiwum zostało wygenerowane przez hypermail 2.1.5 : pią 03 sty 2003 - 19:12:42 CET

Wyprawa Shackleton 2014