|
||||||||
But that's TCP/IP Source Port is something between 1024-65535 and destination is 22. Regards, Juergen -----Ursprüngliche Nachricht----- Von: Brieseneck, Arne, VF-Group [mailto:Arne dot Brieseneck at vodafone dot com] Gesendet: Montag, 10. September 2007 16:54 An: Paul Taylor; m0n0wall at lists dot m0n0 dot ch Betreff: RE: [m0n0wall] RE: SSH rule dows not work Well, but I don't like to open any port to get a connection. 22 is SSH and this is the only port I should have to open... Knorr-Bremse GmbH FN 38565p, LG Wr. Neustadt This transmission is intended solely for the addressee and contains confidential information. If you are not the intended recipient, please immediately inform the sender and delete the message and any attachments from your system. Furthermore, please do not copy the message or disclose the contents to anyone unless agreed otherwise. To the extent permitted by law we shall in no way be liable for any damages, whatever their nature, arising out of transmission failures, viruses, external influence, delays and the like. -----Original Message----- From: Paul Taylor [mailto:PaulTaylor at winn dash dixie dot com] Sent: Montag, 10. September 2007 16:42 To: Brieseneck, Arne, VF-Group; m0n0wall at lists dot m0n0 dot ch Subject: RE: [m0n0wall] RE: SSH rule dows not work TCP 10.5.40.34:22 --> 192.168.50.90:22 denied 1632:45364880 WAN 10.5.40.34:4502 --> 192.168.50.190:22 It is doing exactly what you've configured it to do. Your source port is configured as 22. It is being denied because the source port is 4502. -----Original Message----- From: Brieseneck, Arne, VF-Group [mailto:Arne dot Brieseneck at vodafone dot com] Sent: Monday, September 10, 2007 10:37 AM To: m0n0wall at lists dot m0n0 dot ch Subject: [m0n0wall] RE: SSH rule dows not work Hi all, it seems as if my ssh rule for traffic coming from WAN towards a server in LAN dows not work. The configuration is very simple. And without the rule deny which should allow this traffic and an any-any therefore it is working. So routing etc. is fine. This is the config: TCP 10.5.40.34:22 --> 192.168.50.90:22 and the flow back is allowed in the LAN section: * LANnet:* --> *:* But here is the error: denied 1632:45364880 WAN 10.5.40.34:4502 --> 192.168.50.190:22 This sounds strange to me, because SSH only needs port 22 and no passive ports like FTP. Has anyone a hint? Thanks a lot for your help --------------------------------------------------------------------- To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch --------------------------------------------------------------------- To unsubscribe, e-mail: m0n0wall dash unsubscribe at lists dot m0n0 dot ch For additional commands, e-mail: m0n0wall dash help at lists dot m0n0 dot ch |