News
:
This forum is now permanently frozen.
m0n0wall Forum
>
m0n0wall Support (English)
>
Firewall/NAT
Topic: help another newbie to setup rules
Pages: [
1
]
Topic: help another newbie to setup rules (Read 1596 times)
help another newbie to setup rules
« on: February 14, 2010, 22:37:08 »
zoneros
Posts: 2
Hi! I'm upgrading my account software on my WIN2003 server, which is now SQL based. There are setups needed in my server firewall, stated in the setup manual as seen below.
How do I do this? I can see port rules but not rules for granting software as I've seen in my F-Secure firewall on the client.
"Other firewalls: If you use other types of firewalls, you must manually set up Exceptions in the firewall. Below you will find the configuration for the Windows Firewall. The method for entering values manually will vary for the various types of software; however you must enter the same xceptions for all types.
SQL:
Select Add Port and register the following values:
Name: SQL
Port: 1433
Type: TCP
sqlbrowser.exe
Select Add program, click Browse and double click on sqlbrowser.exe that you will find under
C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
sqlservr.exe
Select Add program, click Browse and double click on sqlbservr.exe that you will find under
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlbservr.exe1
Thanks in advance! I now this is easy for you guys but not for me! /Magnus
Re: help another newbie to setup rules
« Reply #1 on: February 14, 2010, 23:15:49 »
Fred Grayson
Posts: 994
m0nowall does not operate on the application layer. There is no way and no need to add rules for applications since they are not running on the firewall itself.
--
Google is your friend and Bob's your uncle.
Re: help another newbie to setup rules
« Reply #2 on: February 14, 2010, 23:51:23 »
zoneros
Posts: 2
Ok, thanks! So how do I setup the port rule. I guess it should be done in the LAN section.
There is one rule on top already in the LAN section, like this:
Proto Source Port Destination Port Description
* LAN net * * * Default LAN -> any (rule already there)
TCP LAN net * 192.168.20.2 1433 SQL (rule added by me)
Is it enough with the top rule? Does it mean that all traffic, on all ports are allowed???
Is the second rule by me correct or even needed??
/Magnus
Pages: [
1
]