Koozali.org: home of the SME Server

open/block port

Offline mgb

  • *****
  • 558
  • +0/-0
open/block port
« on: October 09, 2013, 03:15:26 PM »
help to open port

sme 8
config my server
Review configuration
Networking Parameters
Server Mode servergateway
Local IP address / subnet mask 192.192.0.254/255.255.0.0
External IP address / subnet mask 192.168.183.50/255.255.255.0   eth1
Gateway 192.168.183.1
Additional local networks 192.192.0.0/255.255.0.0   eth0
DHCP server enabled
Beginning of DHCP address range 192.192.1.2
End of DHCP address range 192.192.192.250

install smeserver-dansguardian

Using NCSA Auth login
the squid proxy port 3128 & redirect port 80 to port 8080


is work ok - all  serves

1-I want to block All traffic from my server to port 443   
2- I want to open port 1220  All traffic from my server to all internet


iptables -L INPUT -v -n
Chain INPUT (policy DROP 0 packets, 0 bytes)
 pkts bytes target     prot opt in     out     source               destination
 4251  493K state_chk  all  --  *      *       0.0.0.0/0            0.0.0.0/0
 2484  224K local_chk  all  --  *      *       0.0.0.0/0            0.0.0.0/0
 1801  177K PPPconn    all  --  *      *       0.0.0.0/0            0.0.0.0/0
    0     0 denylog    all  --  *      *       224.0.0.0/4          0.0.0.0/0
    0     0 denylog    all  --  *      *       0.0.0.0/0            224.0.0.0/4
    0     0 InboundICMP  icmp --  *      *       0.0.0.0/0            0.0.0.0/0
    0     0 denylog    icmp --  *      *       0.0.0.0/0            0.0.0.0/0
   24  1164 InboundTCP  tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x17/0x02
    0     0 denylog    tcp  --  *      *       0.0.0.0/0            0.0.0.0/0           tcp flags:0x17/0x02
 1657  156K InboundUDP  udp  --  eth1   *       0.0.0.0/0            0.0.0.0/0
    0     0 denylog    udp  --  eth1   *       0.0.0.0/0            0.0.0.0/0
   34 11252 ACCEPT     udp  --  eth0   *       0.0.0.0/0            0.0.0.0/0           udp spts:67:68
    0     0 gre-in     47   --  *      *       0.0.0.0/0            0.0.0.0/0
    0     0 denylog    47   --  *      *       0.0.0.0/0            0.0.0.0/0
   86  9244 denylog    all  --  *      *       0.0.0.0/0            0.0.0.0/0
[root@proxy ~]#
Thanks all for helping
Skype yosii2009

Offline mgb

  • *****
  • 558
  • +0/-0
Re: open/block port
« Reply #1 on: October 10, 2013, 08:17:38 AM »
i want the Computers in my network (win) can not browse on port 443
i want the Computers in my network (win) can   browse on port 1220
Thanks
Not found
http://wiki.contribs.org/SME_Server:Documentation:FAQ:Section05
Thanks all for helping
Skype yosii2009

Offline janet

  • *****
  • 4,812
  • +0/-0
Re: open/block port
« Reply #2 on: October 10, 2013, 10:22:40 AM »
mgb

Quote
i want the Computers in my network (win) can not browse on port 443

http://wiki.contribs.org/SME_Server:Documentation:FAQ:Section05#Block_outgoing_ports

Quote
i want the Computers in my network (win) can   browse on port 1220

Outgoing ports should be open by default.
Are you asking how to change the squid proxy port  from 3128 to 1220 ?
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline mgb

  • *****
  • 558
  • +0/-0
Re: open/block port
« Reply #3 on: October 10, 2013, 10:47:45 AM »
not
Are you asking how to change the squid proxy port  from 3128 to 1220 ?


1 asking how to open port in my server for my computers the browse from proxy.
2  There is another problem I run an application from a user.
Blocked by proxy (not proxy application can be set for inserting a username and password)
Baha'is can be set on the server does not block the application
Thank you.
Mashovsetup app name
Thanks all for helping
Skype yosii2009

Offline janet

  • *****
  • 4,812
  • +0/-0
Re: open/block port
« Reply #4 on: October 10, 2013, 11:17:33 AM »
mgb

Quote
1 asking how to open port in my server for my computers the browse from proxy.

Outgoing ports should be open by default.

Generalisation of your requirements does not help us to assist you.
Please say specifically what you want to achieve
Please search before asking, an answer may already exist.
The Search & other links to useful information are at top of Forum.

Offline mgb

  • *****
  • 558
  • +0/-0
Re: open/block port
« Reply #5 on: October 10, 2013, 11:28:42 AM »
I want to run this
https://pda.mashov.info/mashov/mashovsetup.exe
is not work in my network proxy
 log erro " proxy authentication required "
Thanks all for helping
Skype yosii2009

Offline mgb

  • *****
  • 558
  • +0/-0
Re: open/block port
« Reply #6 on: October 27, 2013, 07:51:06 AM »
yes
 problem I run an application from a user.

https://pda.mashov.info/mashov/mashovsetup.exe
Thanks all for helping
Skype yosii2009