Re: [expert] opening ports

2003-11-14 Thread Richard Bown
OK Dan
I'll reply to this off list

Richard
On Fri, 2003-11-14 at 01:05, Daniel Anderson wrote:
 The firewall part of mnf is basicly shorewall with a fancy interface,
 there are other services such as intrusion detection and dhcp also.
 Anyhow, all drops and rejects are already logged, and this is not being
 logged, maybe I need to use a proxy, but I can change the lan to all
 policy to accept instead of reject and it works, so I guess I'll go that
 route.
 Thanks,
 Dan
 On Thu, 2003-11-13 at 17:50, Richard Bown wrote:
  Ok, go thru the config files for mnf and set to log everything, its a
  real pain, but you should then see the incoming packet getting dropped.
  
  I'm not familiar with mnf , but OK with bastille and shorewall.
  But they all have to interface with iptables in the end
  
  
  Richard
  On Thu, 2003-11-13 at 21:25, Daniel Anderson wrote:
   On Thu, 2003-11-13 at 15:02, Richard Bown wrote:
dunno , but you could try tail -f on your firewall logfile and try to
connect to live 365, if its rejecting or dropping you should see which
port its trying to use.
HTH 
Richard
On Thu, 2003-11-13 at 19:34, Daniel Anderson wrote:
 Hi,
 Anyone know what ports I need to open on the firewall to connect to
 Live365.com mp3 servers.
 Thanks,
 Dan
   I'm running mnf on 9.1 and the default policies are supposed to log, and
   they have on other services, but they don't log anything for this. The
   default is to reject all traffic lan to wan, unless there is a rule
   allowing it, I can change it to accept and I can connect, but there is
   nothing logged for this.
   Thanks,
   Dan
 
 
 
 __
 Want to buy your Pack or Services from MandrakeSoft? 
 Go to http://www.mandrakestore.com
   
   
   
   __
   Want to buy your Pack or Services from MandrakeSoft? 
   Go to http://www.mandrakestore.com
 
 
 
 __
 Want to buy your Pack or Services from MandrakeSoft? 
 Go to http://www.mandrakestore.com
-- 
Richard Bown [EMAIL PROTECTED]


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


[expert] opening ports

2003-11-13 Thread Daniel Anderson
Hi,
Anyone know what ports I need to open on the firewall to connect to
Live365.com mp3 servers.
Thanks,
Dan


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Re: [expert] opening ports

2003-11-13 Thread Richard Bown

dunno , but you could try tail -f on your firewall logfile and try to
connect to live 365, if its rejecting or dropping you should see which
port its trying to use.
HTH 
Richard
On Thu, 2003-11-13 at 19:34, Daniel Anderson wrote:
 Hi,
 Anyone know what ports I need to open on the firewall to connect to
 Live365.com mp3 servers.
 Thanks,
 Dan
 
 
 
 __
 Want to buy your Pack or Services from MandrakeSoft? 
 Go to http://www.mandrakestore.com
-- 
Richard Bown [EMAIL PROTECTED]


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Re: [expert] opening ports

2003-11-13 Thread Daniel Anderson
On Thu, 2003-11-13 at 15:02, Richard Bown wrote:
 dunno , but you could try tail -f on your firewall logfile and try to
 connect to live 365, if its rejecting or dropping you should see which
 port its trying to use.
 HTH 
 Richard
 On Thu, 2003-11-13 at 19:34, Daniel Anderson wrote:
  Hi,
  Anyone know what ports I need to open on the firewall to connect to
  Live365.com mp3 servers.
  Thanks,
  Dan
I'm running mnf on 9.1 and the default policies are supposed to log, and
they have on other services, but they don't log anything for this. The
default is to reject all traffic lan to wan, unless there is a rule
allowing it, I can change it to accept and I can connect, but there is
nothing logged for this.
Thanks,
Dan
  
  
  
  __
  Want to buy your Pack or Services from MandrakeSoft? 
  Go to http://www.mandrakestore.com


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Re: [expert] opening ports

2003-11-13 Thread Richard Bown


Ok, go thru the config files for mnf and set to log everything, its a
real pain, but you should then see the incoming packet getting dropped.

I'm not familiar with mnf , but OK with bastille and shorewall.
But they all have to interface with iptables in the end


Richard
On Thu, 2003-11-13 at 21:25, Daniel Anderson wrote:
 On Thu, 2003-11-13 at 15:02, Richard Bown wrote:
  dunno , but you could try tail -f on your firewall logfile and try to
  connect to live 365, if its rejecting or dropping you should see which
  port its trying to use.
  HTH 
  Richard
  On Thu, 2003-11-13 at 19:34, Daniel Anderson wrote:
   Hi,
   Anyone know what ports I need to open on the firewall to connect to
   Live365.com mp3 servers.
   Thanks,
   Dan
 I'm running mnf on 9.1 and the default policies are supposed to log, and
 they have on other services, but they don't log anything for this. The
 default is to reject all traffic lan to wan, unless there is a rule
 allowing it, I can change it to accept and I can connect, but there is
 nothing logged for this.
 Thanks,
 Dan
   
   
   
   __
   Want to buy your Pack or Services from MandrakeSoft? 
   Go to http://www.mandrakestore.com
 
 
 
 __
 Want to buy your Pack or Services from MandrakeSoft? 
 Go to http://www.mandrakestore.com
-- 
Richard Bown [EMAIL PROTECTED]


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Re: [expert] opening ports

2003-11-13 Thread Daniel Anderson
The firewall part of mnf is basicly shorewall with a fancy interface,
there are other services such as intrusion detection and dhcp also.
Anyhow, all drops and rejects are already logged, and this is not being
logged, maybe I need to use a proxy, but I can change the lan to all
policy to accept instead of reject and it works, so I guess I'll go that
route.
Thanks,
Dan
On Thu, 2003-11-13 at 17:50, Richard Bown wrote:
 Ok, go thru the config files for mnf and set to log everything, its a
 real pain, but you should then see the incoming packet getting dropped.
 
 I'm not familiar with mnf , but OK with bastille and shorewall.
 But they all have to interface with iptables in the end
 
 
 Richard
 On Thu, 2003-11-13 at 21:25, Daniel Anderson wrote:
  On Thu, 2003-11-13 at 15:02, Richard Bown wrote:
   dunno , but you could try tail -f on your firewall logfile and try to
   connect to live 365, if its rejecting or dropping you should see which
   port its trying to use.
   HTH 
   Richard
   On Thu, 2003-11-13 at 19:34, Daniel Anderson wrote:
Hi,
Anyone know what ports I need to open on the firewall to connect to
Live365.com mp3 servers.
Thanks,
Dan
  I'm running mnf on 9.1 and the default policies are supposed to log, and
  they have on other services, but they don't log anything for this. The
  default is to reject all traffic lan to wan, unless there is a rule
  allowing it, I can change it to accept and I can connect, but there is
  nothing logged for this.
  Thanks,
  Dan



__
Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com
  
  
  
  __
  Want to buy your Pack or Services from MandrakeSoft? 
  Go to http://www.mandrakestore.com


Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com


Re: [expert] opening ports for Squid

2002-01-15 Thread Scott

On 14 Jan 2002, richard wrote:
 go into /etc/Bastille/bastille-firewall.cfg
 look for this section  and add 3128 to TCP_INTERNAL_SERVICES

Thank you for the help.  I also saw that my eth interface was listed in 
the public interface and it is not, ppp is.  That helped alot too :)

-Scott




Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com



[expert] opening ports for Squid

2002-01-13 Thread Scott

Hi everyone:

I have installed Squid and would like to start using it on my local LAN, but 
the machine it is running on has Bastille running and I need to open that 
port.  Can someone point me to a line in that darn config that will open the 
3128 port on the local lan?

Thanks,

-Scott



Want to buy your Pack or Services from MandrakeSoft? 
Go to http://www.mandrakestore.com