Hi Frank. Ich mal einen neuen Thread auf zu meinem Problem, da ich ihn sonst nicht mehr wieder finde.
Hier die Ausgaben von
~ $ netstat -lnt
~ # iptables-save
fritz@Saugetier:~> netstat -lnt
Aktive Internetverbindungen (Nur Server)
Proto Recv-Q Send-Q Local Address Foreign Address State
tcp 0 0 0.0.0.0:139 0.0.0.0:* LISTEN
tcp 0 0 0.0.0.0:111 0.0.0.0:* LISTEN
tcp 0 0 0.0.0.0:6000 0.0.0.0:* LISTEN
tcp 0 0 81.173.153.46:53 0.0.0.0:* LISTEN
tcp 0 0 192.168.2.1:53 0.0.0.0:* LISTEN
tcp 0 0 192.168.1.1:53 0.0.0.0:* LISTEN
tcp 0 0 127.0.0.1:53 0.0.0.0:* LISTEN
tcp 0 0 127.0.0.1:25 0.0.0.0:* LISTEN
tcp 0 0 0.0.0.0:7741 0.0.0.0:* LISTEN
tcp 0 0 :::22 :::* LISTEN
iptables-save
Generated by iptables-save v1.2.5 on Sat Aug 7 09:19:03 2004
*nat
PREROUTING ACCEPT [329626:16372715]
POSTROUTING ACCEPT [2036:239944]
OUTPUT ACCEPT [2036:239944]
-A PREROUTING -s 192.168.0.0/255.255.0.0 -i ppp0 -j DROP
-A PREROUTING -s 10.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A PREROUTING -s 172.16.0.0/255.240.0.0 -i ppp0 -j DROP
-A PREROUTING -s 127.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A POSTROUTING -s 192.168.0.0/255.255.0.0 -o ppp0 -j MASQUERADE
COMMIT
Completed on Sat Aug 7 09:19:03 2004
Generated by iptables-save v1.2.5 on Sat Aug 7 09:19:03 2004
*filter
INPUT ACCEPT [7016:944652]
FORWARD ACCEPT [4139983:2258609117]
OUTPUT ACCEPT [4646:671373]
-A INPUT -m unclean -j DROP
-A INPUT -s 192.168.0.0/255.255.0.0 -i ppp0 -j DROP
-A INPUT -s 10.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A INPUT -s 172.16.0.0/255.240.0.0 -i ppp0 -j DROP
-A INPUT -s 127.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A INPUT -i ppp0 -p icmp -m icmp --icmp-type 8 -j ACCEPT
-A INPUT -i ppp0 -m state --state INVALID,NEW -j LOG
-A INPUT -i ppp0 -m state --state INVALID,NEW -j DROP
-A FORWARD -o ppp0 -p tcp -m tcp --tcp-flags SYN,RST SYN -j TCPMSS --clamp-mss-t
o-pmtu
-A FORWARD -m unclean -j DROP
-A FORWARD -s 192.168.0.0/255.255.0.0 -i ppp0 -j DROP
-A FORWARD -s 10.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A FORWARD -s 172.16.0.0/255.240.0.0 -i ppp0 -j DROP
-A FORWARD -s 127.0.0.0/255.0.0.0 -i ppp0 -j DROP
-A FORWARD -d 192.168.0.0/255.255.0.0 -i ppp0 -j ACCEPT
-A FORWARD -i ppp0 -m state --state INVALID,NEW -j LOG
-A FORWARD -i ppp0 -m state --state INVALID,NEW -j DROP
COMMIT
Completed on Sat Aug 7 09:19:03 2004
Ach ja: Die Suse Firewall läuft bei mir nicht. Stattdessen so ein Script von http://linuxrouter.minots.net/routing.html
Gruss Fritz