IPFilter a Xka

Petr Valenta xvalen at sendmail.cz
Wed Jun 2 16:36:29 CEST 2004


Zdravicko,
mam takovy problem, nastavil jsem IPFilter a pri spusteni pocitace mi 
sice xdm nabehne, ale po prihlaseni se nespusti window manager, jenom 
nabehnou aplikace, ktere mam v .xsession, ale ty sitove, jak tkabber 
(jabber klient) stejne nefunguji. Tady je obsah meho  /etc/ipf.conf :


block in log quick from any to any with ipopts
block in log quick from any to any with short

#loopback
pass in quick on lo0 all
pass out quick on lo0 all

#pravidla pro odchazejici pakety
pass out on rl0 all head 100
block out from 127.0.0.0/8 to any group 100
block out from any to 127.0.0.0/8 group 100
block out from any to MOJEIP group 100

#pravidla pro prichazejici pakety
block in on rl0 from any to any  head 200    #toto je ten problemovy radek
block in proto tcp from any to any port = ftp head 210
block in from 127.0.0.0/8 to any group 200
block in from MOJEIP to any group 200
pass in quick proto tcp from any to any port = ssh keep state group 200
pass in quick proto tcp from 147.229.0.0/16 to any port = ftp keep state 
group 210
block return-rst in log proto tcp from any to any flags S/SA group 200
block return-icmp(net-unr) in proto udp all group 200

Neni mi jasne, proc nenabehne WM, kdyz blokuju pakety prichazejici pres 
sitovku. Pokud Vas neco napada, moc byste mi pomohli.
Diky Petr



More information about the Users-l mailing list