Displaying 20 results from an estimated 7986 matches for "establish".
2011 Feb 10
2
Samba4 and iptables
...for bind the port 53.
The clients (WinXP) seems to have problems to read and write from/to the
home directories. Maybe samba4 need additional or other ports to working
fine?
Here my current iptables-rules:
IPTABLES=/sbin/iptables
#Bind
$IPTABLES -A INPUT -p tcp --dport 53 -m state --state NEW,ESTABLISHED -j
ACCEPT;
$IPTABLES -A OUTPUT -p tcp --sport 53 -m state --state ESTABLISHED -j
ACCEPT;
$IPTABLES -A INPUT -p udp --dport 53 -m state --state NEW,ESTABLISHED -j
ACCEPT;
$IPTABLES -A OUTPUT -p udp --sport 53 -m state --state ESTABLISHED -j
ACCEPT;
#Samba
$IPTABLES -A INPUT -p udp --dport 13...
2005 Jun 14
1
Problem with samba broadcast
...tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:113
Chain all2all (0 references)
pkts bytes target prot opt in out source
destination
0 0 ACCEPT all -- * * 0.0.0.0/0
0.0.0.0/0 state RELATED,ESTABLISHED
0 0 Drop all -- * * 0.0.0.0/0
0.0.0.0/0
0 0 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:all2all:DROP:''
0 0 DROP all -- * * 0.0.0.0/0...
2017 Jan 30
4
Help with iptables && tinc
Hi,
I've been able to get tinc setup when I flush all my iptables, but after
enabling iptables and a delay I get a "Destination Net Unknown". I have
three host (HOME10.0.3.2, MASTER 10.0.3.1, WEB 10.0.3.3) MASTER and WEB are
in Digital ocean in the same data centre.
HOME <---> MASTER <---> WEB
I've tried multiple forwarding/masquerading/etc rules and
2013 Sep 05
1
MDL-ERROR
...the first one is configured as CPE, the second
one as NET(so I don't need real lines for developing and testing).
Once in a while I do see the following libpri error messages simultaneously on both boxes:
PRI Span: 1 TEI=0 MDL-ERROR (A): Got supervisory frame with F=1 in state 7(Multi-frame established)
PRI Span: 2 TEI=0 MDL-ERROR (A): Got supervisory frame with F=1 in state 7(Multi-frame established)
PRI Span: 2 TEI=0 MDL-ERROR (A): Got supervisory frame with F=1 in state 7(Multi-frame established)
PRI Span: 4 TEI=0 MDL-ERROR (A): Got supervisory frame with F=1 in state 7(Multi-frame establish...
2017 Jan 30
1
Help with iptables && tinc
...0 DROP icmp -- * * 0.0.0.0/0
> 0.0.0.0/0 icmptype 8
> 0 0 ACCEPT icmp -- * * x.x.x.x 0.0.0.0/0
> icmptype 8
> 0 0 ACCEPT icmp -- * * 0.0.0.0/0
> 0.0.0.0/0 state RELATED,ESTABLISHED
> 0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0
> 0.0.0.0/0 tcp spt:5666
> 0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0
> 0.0.0.0/0 tcp dpt:22 state NEW,ESTABLISHED
> 192 13741 ACCEPT tcp -- eth0 * 0.0.0.0/0
&...
2018 Oct 04
3
help with samba and iptables
.../sbin/iptables -A INPUT -i lo -j ACCEPT
# Permito las IP
iptables -A INPUT -s 192.168.1.5 -j ACCEPT
#permito el acceso a servicio ntp
/sbin/iptables -A INPUT -s 192.168.2.3 -p udp -m udp --dport 123 -j ACCEPT
/sbin/iptables -A INPUT -s 192.168.2.3 -p udp -m udp --sport 123 -m
state --state RELATED,ESTABLISHED -j ACCEPT
#permito el acceso a smb-udp
#lan dvm
/sbin/iptables -A INPUT -s 192.168.1.0/24 -p udp -m udp --dport 88 -j ACCEPT
/sbin/iptables -A INPUT -s 192.168.1.0/24 -p udp -m udp --sport 88 -m
state --state RELATED,ESTABLISHED -j ACCEPT
/sbin/iptables -A INPUT -s 192.168.1.0/24 -p udp -m udp -...
2013 Mar 29
1
iptables settings for X11 forwarding in CentOS 6.2
...11 forwarding? Currently we're using
iptables -P INPUT DROP
iptables -P FORWARD DROP
iptables -P OUTPUT ACCEPT
iptables -A INPUT -m limit --limit 15/minute -j LOG --log-level 7
--log-prefix "Dropped by firewall: "
iptables -A INPUT -i eth1 -p tcp --dport 22 -m state --state
NEW,ESTABLISHED -j ACCEPT
iptables -A INPUT -i eth1 -p tcp --dport 80 -m state --state
NEW,ESTABLISHED -j ACCEPT
iptables -A INPUT -i eth1 -p tcp --dport 8080 -m state --state
NEW,ESTABLISHED -j ACCEPT
iptables -A INPUT -i eth1 -p tcp --dport 6000 -m state --state
NEW,ESTABLISHED -j ACCEPT
iptables -A INPUT -...
2006 Nov 11
5
src/etc/rc.firewall simple ${fw_pass} tcp from any to any established
...fficulty with were cases pppoed MTU
!= 1500, from not having installed tcpmssd on my 4.*-RELEASE, but
then running 6.1-RELEASE I realised that wasn't the problem.
http://www.web.de Still failed, &
http://www.sueddeutsche.de Was slow.
I tried adding
${fwcmd} add pass tcp from any to any established
from src/etc/rc.firewall case - simple. Which solved it.
But I was scared, not undertstand what the established bit did, &
how easily an attacker might fake something, etc.
I found adding these tighter rules instead worked for me
${fwcmd} tcp from any http to me established in via tun0
${fw...
2014 Aug 01
1
Connecting Asterisk and BT Versatility PBX via NT BRI port
...gineer.com/downloads/versatility/versatility-installation.pdf
Putting the pri span in debug mode I can see the following log continuously scrolling
and the PBX never synchronize with the openvox B400P card:
PRI Span: 1 TEI=0 MDL-ERROR (G): T200 expired N200 times sending SABME in state 5(Awaiting establishment)
PRI Span: 1 Changing from state 5(Awaiting establishment) to 4(TEI assigned)
PRI Span: 1 TEI=0 DL event: Q931_DL_EVENT_DL_RELEASE_IND(3)
PRI Span: 1 SAPI/TEI=0/0 Kick starting link
PRI Span: 1 TEI=0 Sending SABME
PRI Span: 1 Changing from state 4(TEI assigned) to 5(Awaiting establishment)
PRI...
2007 Feb 01
4
X forwarding: trying to forward to busy local port
...snip>
Out of some reason, port 6018 on 127.0.0.1 is not used by sshd (but it should: see "::1:6018" below).
Further investigations lead to the following:
<snip>
jackdaw:~ # netstat -pn | grep ":6016"
tcp 0 0 127.0.0.1:6016 127.0.0.1:6039 ESTABLISHED 14279/sshd: jens at no
tcp 0 0 127.0.0.1:6016 127.0.0.1:6038 ESTABLISHED 14279/sshd: jens at no
tcp 0 0 127.0.0.1:6016 127.0.0.1:6037 ESTABLISHED 14279/sshd: jens at no
tcp 0 0 127.0.0.1:6016 127.0.0.1:6047...
2011 Apr 07
0
TCP connection incresement when reconfigure and question about multi-graph
Hi, all.
I set up a dht system, and sent a HUP signal to client to trigger the reconfiguration.
But i found that the TCP connection established increased by the number
of bricks(the number of glusterfsd progress).
$ ps -ef | grep glusterfs
root 8579 1 0 11:28 ? 00:00:00 glusterfsd -f /home/huz/dht/server.vol -l /home/huz/dht/server.log -L TRACE
root 8583 1 0 11:28 ? 00:00:00 glusterfsd -f /home/huz/dht...
2006 Jan 27
2
php-ldap can't log on with browser
...cess to this port is disabled for security reasons.
Added command (hint from earlier posting) and got this list
# netstat -aptn | grep :389
tcp 0 0 0.0.0.0:389 0.0.0.0:*
LISTEN 2407/slapd
tcp 0 0 127.0.0.1:389 127.0.0.1:33057
ESTABLISHED 2407/slapd
tcp 0 0 127.0.0.1:389 127.0.0.1:32833
ESTABLISHED 2407/slapd
tcp 0 0 127.0.0.1:389 127.0.0.1:33058
ESTABLISHED 2407/slapd
tcp 0 0 127.0.0.1:33053 127.0.0.1:389
ESTABLISHED 2576/httpd
tcp...
2017 Jan 30
0
Help with iptables && tinc
.../24
0.0.0.0/0
0 0 DROP icmp -- * * 0.0.0.0/0
0.0.0.0/0 icmptype 8
0 0 ACCEPT icmp -- * * x.x.x.x 0.0.0.0/0
icmptype 8
0 0 ACCEPT icmp -- * * 0.0.0.0/0
0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0
0.0.0.0/0 tcp spt:5666
0 0 ACCEPT tcp -- eth0 * 0.0.0.0/0
0.0.0.0/0 tcp dpt:22 state NEW,ESTABLISHED
192 13741 ACCEPT tcp -- eth0 * 0.0.0.0/0
0.0.0.0/0 tcp d...
2009 Feb 10
3
something wrong with mongrel?
Hi all,
I''ve followed http://reductivelabs.com/trac/puppet/wiki/UsingMongrel
for configuring my puppet with mongrel.
Al seems to work fine, except that, after a reinstall of 40 nodes atone
time, I got many kind of errors like:
-------------------------------------------------------------------------
err: Could not request certificate: Certificate retrieval failed: .tmp
file already
2018 May 30
3
Password recovery trick not working on CentOS
Hi,
I remember back in the days, there was a neat trick to recover a lost
root password, or more exactly, redefine a new password for root.
1. In the bootloader, boot the system with the 'init=/bin/bash' kernel
argument.
2. Remount the root partition in read-write mode:
# mount -o remount,rw /
3. Set the password for root:
# passwd
4. Remount the root partition in read-only
2013 Jul 08
6
Getting nwfilter to work on Debian Wheezy
...>
> Chain OUTPUT (policy ACCEPT)
> target prot opt source destination
>
> Chain FI-vnet0 (1 references)
> target prot opt source destination
> RETURN tcp -- 0.0.0.0/0 0.0.0.0/0 tcp spt:22 state ESTABLISHED ctdir ORIGINAL
> RETURN tcp -- 0.0.0.0/0 0.0.0.0/0 tcp spt:80 state ESTABLISHED ctdir ORIGINAL
> RETURN icmp -- 0.0.0.0/0 0.0.0.0/0 state NEW,ESTABLISHED ctdir REPLY
> RETURN udp -- 0.0.0.0/0 0.0.0.0/0 udp...
2019 Jun 26
4
iptables - how to block established connections with fail2ban?
I am working to a CentOS 6 server with nonstandard iptables system
without rule for ACCEPT ESTABLISHED connections. All tables and chains
empty (flush by legacy custom script) so only filter/INPUT chain has
rules (also fail2ban chain):
Chain INPUT (policy ACCEPT)
target prot opt source destination
f2b-postfix tcp -- 0.0.0.0/0 0.0.0.0/0
ACCEPT all -- 192.16...
2018 Jun 01
5
Centos 7 (using iptables) removed firewalld
...######################################################################################## 4. Allow ALL incoming SSH########################################################################################################################iptables -A INPUT -i $EXIF -p tcp --dport 22 -m state --state NEW,ESTABLISHED -j ACCEPT#iptables -A OUTPUT -o $EXIF -p tcp --sport 22 -m state --state ESTABLISHED -j ACCEPT
######################################################################################################################## 5. Allow incoming SSH only from a specific network###############################...
2019 Jul 19
2
Samba4 - global catalog (GC) cannot be contacted using Windows 7 RSAT
...cp 0 0 0.0.0.0:139 0.0.0.0:*
LISTEN 2576/smbd
tcp 0 0 0.0.0.0:111 0.0.0.0:*
LISTEN 976/rpcbind
tcp 0 0 0.0.0.0:464 0.0.0.0:*
LISTEN 2580/samba
tcp 0 0 DC1_IP:49153 Other_IP:49182
ESTABLISHED 8972/samba
tcp 0 0 DC1_IP:49152 Other_IP:54906
ESTABLISHED 2573/samba
tcp 0 0 DC1_IP:389 Other_IP:63555
ESTABLISHED 9412/samba
tcp 0 0 DC1_IP:445 Other_IP:54486
ESTABLISHED 15410/smbd
tcp 0 0 DC1_IP:135...
2007 Sep 06
0
Server crashes...
...6:5070
SYN_RECV
tcp 0 0 localhost:80 116.24.107.180:3077
SYN_RECV
tcp 0 0 localhost:80 77.70.106.4:5882
SYN_RECV
tcp 0 0 localhost:80 38.100.200.234:2330
SYN_RECV
tcp 0 0 localhost:80 222.89.236.208:4455
ESTABLISHED
tcp 0 0 localhost:80 59.56.127.21:1711
TIME_WAIT
tcp 0 0 localhost:80 72.232.110.42:2641
ESTABLISHED
tcp 0 0 localhost:80 77.70.106.4:13781
ESTABLISHED
tcp 0 0 localhost:80 75.37.103.134:54726
ESTABLIS...