Erich & Kwon,
Thanks for the reply.
Kwon, I have those rules in my policy file and Erich, The only net - fw
rules are:
SSH/ACCEPT   net:blomm.homeip.net       fw
SSH/ACCEPT   net:jlblom.homeip.net      fw
and
Ping/ACCEPT  net         fw
But I think I know my error in thinking. I used my local browser,
thinking I was connecting via the internet!!
Sorry for my stupidity!
Joep



On Tue, 2007-08-21 at 02:56 -0400, Kwon wrote:
> > Eh, correction: I have only "ACCEPT fw net" for port 80 NOT net fw. Why
> > is the port 80 request accepted?
> > Joep
> >  
> In /etc/shorewall/policy make sure you have the following two rules in the 
> following order:
> net           all             DROP            ULOG
> all           all             REJECT          ULOG
> 
> In /etc/shorewall/rules make sure you *don't* have something like:
> ACCEPT  net  fw  tcp 80,443
> 
> Cheers!
> 
> 
> -------------------------------------------------------------------------
> This SF.net email is sponsored by: Splunk Inc.
> Still grepping through log files to find problems?  Stop.
> Now Search log events and configuration files using AJAX and a browser.
> Download your FREE copy of Splunk now >>  http://get.splunk.com/
> ------------------------------------------------------------------------
> leaf-user mailing list: leaf-user@lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/leaf-user
> Support Request -- http://leaf-project.org/


-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >>  http://get.splunk.com/
------------------------------------------------------------------------
leaf-user mailing list: leaf-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/

Reply via email to