glug:firewall

Paolo Gaggini glug@genova.linux.it
Mon, 10 Feb 2003 13:27:15 +0100


On Monday 10 February 2003 12:13, Federico /* juri */ Pedemonte wrote:

> E gia' che ci  sei chiudi anche tutti gli altri 2000  servizi che hai
> in ascolto !!!

Ho bloccato le porte aperte in ingresso con ipchains, ma se faccio uno 
scanning sono rimaste aperte.
ipchains -L mi da questo output:

Chain input (policy ACCEPT):
target     prot opt     source                destination           
ports
DENY  tcp  ----l-  anywhere        192.168.0.3         any ->   0:1023
DENY       icmp ----l-  anywhere       anywhere       echo-request
DENY       icmp ----l-  192.168.0.3    anywhere       echo-request
DENY       tcp  ----l-  anywhere     anywhere           any ->   1026
DENY       tcp  ----l-  anywhere     anywhere           any ->   1025
DENY       tcp  ----l-  anywhere   anywhere            any ->   2049
DENY       tcp  ----l-  anywhere    anywhere            any ->   1024
DENY       tcp  ----l-  anywhere     anywhere            any ->   773
DENY       tcp  ----l-  anywhere     anywhere            any ->   800
DENY       tcp  ----l-  anywhere     anywhere         any ->   linuxconf
DENY       tcp  ----l-  anywhere      anywhere         any ->   time
DENY       tcp  ----l-  anywhere      anywhere         any ->   daytime
DENY       tcp  ----l-  anywhere      anywhere         any ->   discard
DENY       tcp  ----l-  anywhere      anywhere            any ->  nrpc
DENY       udp  ----l-  anywhere     anywhere            any ->   1026
DENY       udp  ----l-  anywhere     anywhere            any ->   2049
DENY       udp  ----l-  anywhere     anywhere           any ->  discard
DENY       udp  ----l-  anywhere     anywhere              any ->bootps
DENY       udp  ----l-  anywhere    anywhere              any ->   1025
DENY       udp  ----l-  anywhere    anywhere              any ->   773
DENY       udp  ----l-  anywhere    anywhere              any ->   1024
DENY       udp  ----l-  anywhere    anywhere              any ->   800
DENY       udp  ----l-  anywhere    anywhere              any ->  sunrpc

Dov'è l'errore??

----------
Paolo Gaggini
gse@libero.it  --   email pubblica
http://www.gseserver.net  -- GSE Network
http://www.biologiafacile.net -- Portale Universitario
http://www.linux-at-home.net   -- LINUX@HOME

#220216 Linux Registered User