Samba What a struggle

Allingham, Richard RAllingham at imgworld.com
Thu Mar 4 10:20:15 UTC 2004


> Alexander Dalloz wrote:
> > Am Mi, den 03.03.2004 schrieb Andrew Robinson um 20:51:
> >
> >
> >># Samba access
> >>-A RH-Firewall-1-INPUT -m udp -p udp --dport 137:138 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m udp -p udp --sport 137:138 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m tcp -p tcp --dport 139 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m tcp -p tcp --dport 445 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m udp -p udp --dport 445 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m tcp -p tcp --dport 1512 -j ACCEPT
> >>-A RH-Firewall-1-INPUT -m udp -p udp --dport 1512 -j ACCEPT
> >>
> >>I don't think all of these iptables entries are required to
> get Samba to
> >>work. However, this works for me.

> How would I restrict these entries to my local net? Do I add an "-s
> 192.168.1/24" to each line?
>
> Thanks!
>
> Andrew

I've put "-s 192.168.1.0/24" in mine but you've got the basic idea.

Richard

DISCLAIMER - The preceding e-mail message (including any attachments)
contains information that may be confidential, may be protected by the
attorney-client or other applicable privileges, or may constitute non-public
information.  It is intended to be conveyed only to the designated
recipient(s) named above.  If you are not an intended recipient of this
message, please notify the sender by replying to this message and then
delete all copies of it from your computer system.  Any use, dissemination,
distribution, or reproduction of this message by unintended recipients is
not authorized and may be unlawful. The contents of this communication do
not necessarily represent the views of this company.





More information about the fedora-list mailing list