Koozali.org: home of the SME Server

Customising SME firewall

sander

Customising SME firewall
« on: January 21, 2002, 06:05:48 PM »
Is it possible for me to open some ports of the firewall?

As i am MSN messanger user I want to open ports needed for file transfers 6891 to 6900 .
The TCP ports must be configured so that sockets on a port remain open for extended periods of time.

Is there any kind of howto for this? or a simple way to open these ports?

please help

sander

Jerry

Re: Customising SME firewall
« Reply #1 on: January 22, 2002, 02:13:22 AM »
I'm ussing a firewall script that allows almost everything form the netwerk at home and you can can tell with the setup which port have to been open ,like smtp and all kind of things , take a look on www.pmfirewall.com

It works great !!!


Jerry, netherlands

RypPn

Re: Customising SME firewall
« Reply #2 on: January 22, 2002, 10:47:15 PM »
Guys, port-forwarding has been covered before in great detail... this is a link to the currently recommended option --> http://myezserver.com/docs/mitel/ipportfw-howto.html from the SME Contributed HowTo's.

Best Regards

Charlie Brady

Re: Customising SME firewall
« Reply #3 on: January 23, 2002, 12:14:08 AM »
Jerry wrote:

> I'm ussing a firewall script that allows almost everything
> form the netwerk at home and you can can tell with the setup
> which port have to been open ,like smtp and all kind of
> things , take a look on www.pmfirewall.com
>
> It works great !!!

The standard built in firewalling of the SME server already allows free outbound traffic, and opens any inbound port which needs to be open (because there is an available service behind it). It is also easily modified, using custom templates, as documented at http://www.e-smith.org/custom/.

[FYI - the SME server code was originally derived from an earlier version of pmfirewall.]

Regards

Charlie

sander

Re: Customising SME firewall
« Reply #4 on: January 23, 2002, 01:16:41 AM »
Charlie Brady wrote:

>
> The standard built in firewalling of the SME server already
> allows free outbound traffic,
msn messanger sais that contact you network administrato or ISP and may-be thay can enable file transfers. I don't know which port it uses to connect to internet for file transfers. Ftp works fine when uploading(using passive mode).


> and opens any inbound port
> which needs to be open (because there is an available service
> behind it). It is also easily modified, using custom
> templates, as documented at http://www.e-smith.org/custom/.

as i am not a linux pro and i can't program at all, so i do not know how to customize. :(

sander

John Gray

Re: Customising SME firewall
« Reply #5 on: February 15, 2002, 07:57:42 AM »
Hi Charlie et al

If this is true. . .

"The standard built in firewalling of the SME server already allows free outbound traffic, and opens any inbound port which needs to be open (because there is an available service behind it). It is also easily modified, using custom templates, as documented at http://www.e-smith.org/custom/."

is so, why can't e-smith handle the downlink of my Satellite card?

Does anyone have any info on this by any chance?  I love e-smith!  It is easy to configure and use, but, I want to use my satellite downlink.

Regards

John