免费注册 查看新帖 |

Chinaunix

  平台 论坛 博客 文库
最近访问板块 发新帖
查看: 1239 | 回复: 1
打印 上一主题 下一主题

ipfilter和QQ的问题 [复制链接]

论坛徽章:
0
跳转到指定楼层
1 [收藏(0)] [报告]
发表于 2003-07-27 10:56 |只看该作者 |倒序浏览
我在我的网关主机(FreeBSD4.8)上应用了如下的ipfilter规则
block in quick all with short
block in quick all with ipopts
block in quick all with frag
block in quick all with opt lsrr
block in quick all with opt ssrr


pass in quick on tun0 proto tcp from any to any port = 20 keep state
pass in quick on tun0 proto tcp from any to any port = 21 keep state

pass in quick on tun0 proto tcp from any to any  port = 22 keep state

pass in quick on tun0 proto tcp from any to any port = 25 keep state
pass in quick on tun0 proto tcp from any to any port = 110 keep state

pass in quick on tun0 proto tcp from any to any port = 80 keep state

#pass in quick on tun0 proto tcp from any to any port = 3306 keep state

pass in quick on tun0 proto tcp from any to any port = ftp flags S/SA keep state
pass in quick on tun0 proto tcp from any to any port = ftp-data flags S/SA keep state
pass in quick on tun0 proto tcp from any to any port 30000 >;< 50001 flags S/SA keep state

pass out on tun0 proto icmp all keep state
pass out on tun0 proto tcp/udp from any to any keep state

pass in on rl0 all
pass out on rl0 all
pass in on lo0 all
pass out on lo0 all


发现内网的qq主动呼叫外网用户没有问题,但是外网用户不能主动呼叫内网用户
不知道还需要开放哪些端口?

论坛徽章:
0
2 [报告]
发表于 2003-07-27 18:35 |只看该作者

ipfilter和QQ的问题

pass in quick on tun0 proto tcp from any to any port = 5190 flags S/SA keep state
您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复

  

北京盛拓优讯信息技术有限公司. 版权所有 京ICP备16024965号-6 北京市公安局海淀分局网监中心备案编号:11010802020122 niuxiaotong@pcpop.com 17352615567
未成年举报专区
中国互联网协会会员  联系我们:huangweiwei@itpub.net
感谢所有关心和支持过ChinaUnix的朋友们 转载本站内容请注明原作者名及出处

清除 Cookies - ChinaUnix - Archiver - WAP - TOP