News: This forum is now permanently frozen.
Pages: [1]
Topic: don't block port  (Read 2204 times)
« on: June 03, 2007, 14:41:40 »
kelaynak *
Posts: 2

Hi,
İ'm using m0n0wall 1.26 on ip120. Very well running. Two interface LAN and WAN. OPT not enabled.  LAN side block port 80. but not blocked.
my config LAN rule
           Proto    Source          Port    Destination    Port    Description
1.allow TCP     LAN net         *                *              *
2.block TCP      LAN net        *                 *              80

thanks a lot 


very sory i'm little english
« Last Edit: June 03, 2007, 14:48:59 by kelaynak »
« Reply #1 on: June 04, 2007, 09:34:05 »
getafix *
Posts: 23

My understanding if firewalling is very limited, but I am positive that firewalls treat rules in a specific order. What Ican see is that you are allowing all traffic (including http) first then your second rule stops http traffic.
Change your rules around and place your http blocking rule first.

Cheers
Gareth
« Reply #2 on: June 05, 2007, 15:14:00 »
kelaynak *
Posts: 2

thanks. I'm ver stupid. Embarrassed
one question. blocking limewire traffic. but not blocking. firewall log see block. not block limewire and connect.

my rule add:
           Proto    Source          Port    Destination    Port    Description
1.block TCP              LAN net        *                 *              80
2.block TCP/UDP      LAN net        *                 *             6346
3.block TCP/UDP      LAN net        *                 *             6347
4.block TCP/UDP      LAN net        *                 *             6348
5.allow TCP             LAN net         *                *              *


« Reply #3 on: June 05, 2007, 16:39:22 »
getafix *
Posts: 23

Glad the first problem was sorted out - it is sorted out is it?  Wink

As for the second problem. I know that the P2P programs use random ports, so if they can't connect they try another.
Just something to consider. Most firewalls install with all ports open on the LAN side, ie you can connect to anything.
What you should do (and please anyone correct me if I am wrong) is block everything and then only allow access to those specific things, ie email, https (for online banking etc). That way you won't be vulnerable to intrusions.

Just a thought.

Hope that helps

Gareth
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines