eesm_redhat
(usa Arch Linux)
Enviado em 01/04/2009 - 13:50h
Eae cara blz
Tche seguinte nao funcionou, coloquei as regras, dai voltou a dar conection refused, e nao liberou as porta 21, dai coloquei novamente os inputs, so que mesmo assim da o erro do time out, abaixo segue como ficou
iptables -vnL (aparece isso)
Chain INPUT (policy ACCEPT 9448 packets, 4737K bytes)
pkts bytes target prot opt in out source destination
9479 4740K LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4 prefix ` INPUT '
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:20
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:22
0 0 DROP tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:3128
0 0 DROP tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:139
0 0 DROP tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:443
0 0 DROP tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:445
0 0 DROP tcp -- eth0 * 0.0.0.0/0 0.0.0.0/0 tcp dpt:631
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:67
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:137
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:138
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:631
34 4400 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:1024
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:1025
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:3130
0 0 DROP udp -- eth0 * 0.0.0.0/0 0.0.0.0/0 udp dpt:4287
Chain FORWARD (policy ACCEPT 2319 packets, 463K bytes)
pkts bytes target prot opt in out source destination
2325 464K LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4 prefix ` FORWARD '
6 360 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:21
Chain OUTPUT (policy ACCEPT 10140 packets, 4922K bytes)
pkts bytes target prot opt in out source destination
10139 4922K LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4 prefix ` OUTPUT '
iptables -t nat -L
target prot opt source destination
REDIRECT tcp -- anywhere anywhere tcp dpt:webcache redir ports 80
DNAT tcp -- anywhere anywhere tcp dpt:ftp to:192.168.xxx.xxxx:21
DNAT tcp -- anywhere anywhere tcp dpt:ftp to:192.168.xxx.xxx:21
DNAT tcp -- anywhere c9259696.virtua.com.br tcp dpt:ftp to:192.168.xxx.xxx:21
Chain POSTROUTING (policy ACCEPT)
target prot opt source destination
MASQUERADE all -- anywhere anywhere
ACCEPT tcp -- anywhere anywhere tcp dpt:5900
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
Obs
c9259696.virtua.com.br e o netvirtua