Hi, everyone, I'm find the ipchains not work , I think is my fault , but don't know where I wrong sir..
My configuration is like that, I'm using Masq , and now my other PC use internal IP to connect the redhat box with adsl-line, and I wana to DENY outside people try to ping my host, is that call ICMP ? and I before try a line like that..
 
ipchains -A input -s echo-request -i ppp0 -j DENY
 
But after that I try to telnet another host and ping myself redhat box, it STILL can ping and have response , so weired ? thankyou your reply , sir /mardam
 
before the ( ipchains -A input -s echo-request -i ppp0 -j DENY )
I also type "ipchains -L"
here is below I get the result..
 
Chain input (policy ACCEPT):
target     prot opt     source                destination           ports
ACCEPT     all  ---f--  anywhere             anywhere              n/a
acctin     all  ------  anywhere             anywhere              n/a
acctboth   all  ------  anywhere             anywhere              n/a
inp        all  ------  anywhere             anywhere              n/a
Chain forward (policy DENY):
target     prot opt     source                destination           ports
MASQ       all  ------  anywhere             anywhere              n/a
ACCEPT     all  ---f--  anywhere             anywhere              n/a
fwd        all  ------  anywhere             anywhere              n/a
Chain output (policy ACCEPT):
target     prot opt     source                destination           ports
ACCEPT     all  ---f--  anywhere             anywhere              n/a
acctout    all  ------  anywhere             anywhere              n/a
acctboth   all  ------  anywhere             anywhere              n/a
out        all  ------  anywhere             anywhere              n/a
Chain acctin (1 references):
Chain acctout (1 references):
Chain acctboth (2 references):
Chain inp (1 references):
Chain out (1 references):
Chain fwd (1 references):
Chain IpFwAdM! (0 references):
target     prot opt     source                destination           ports
-          all  ------  anywhere             anywhere              n/a
-          all  ------  anywhere             anywhere              n/a
 
 

Reply via email to