Displaying 20 results from an estimated 50000 matches similar to: "YASP (Yet another Samba Problem) and Shorewall"
2004 Oct 28
1
smb being blocked by mac filter
I use shorewall 2.0.9 I have a mac filter running on my eth2(wifi) 192.168.0.1 is eth1(loc).
My policy file allows trafic from wifi to loc and loc to wifi.  Also fw to wifi and fw to loc.
I also use AllowSMB loc to fw and AllowSMB wifi to fw.  Any ideas?
Shorewall:eth2_mac:REJECT:IN=eth2 OUT= MAC= SRC=192.168.0.1 DST=192.168.1.255
LEN=241 TOS=0x00 PREC=0x00 TTL=64 ID=6188 DF PROTO=UDP SPT=138
2005 May 31
2
Local machine not through firewall
Currently I have shorewal 2.2 installed om my debian 2.6.8 kernel. The firewall machine can access the internet via a ethernet modem fine. The firewall can ping the local network. The local network can ping the firewall server, see the samba files. Howeven teh local network cannot access the internet through the firewall
Any suggestions?
Rob van Overbruggen
Settings and stats:
Server:
Eth1 : 
2004 Jun 11
5
help with rules / log entries
Hello,
I''m working in configuring a very restrictive firewall to stick between our
techroom and our internal network.  Basically nothing should be allowed into
the techroom and only a limited amount of traffic is to leave the techroom.
Below are a few log entries I looking to get explained.
DHCP is handled by the firewall, DNS is handled by servers side our
techroom.
my rules file
2005 Apr 14
5
Shorewall, PPTP VPN, and Samba
What I''m doing:
I have Shorewall on a SuSE 9.0 machine, which is the firewall/router 
on the network. External interface is eth0 172.16.1.1, internal 
interface is eth1 10.40.1.1. (I used the Two-interface Linux System 
Quickstart Guide). All works well with that configuration. I also use 
PPPD for dial-in clients, and have two modems for incoming calls.
Recently I added VPN interface
2004 Oct 11
5
Intermittant Samba glitch
Hi there,
Let me just start by saying that I am a bit of a Linux newbie, but that Shorewall seems an excellant product. The issue I''m reporting wont stop me from using it, it still does 99% of what I need. 
Anyway, I have a resonably simple two interface system. My server (HatMannz, P3-900MHz with a RAID-1 array of 80GB IDE drives running Red Hat 9.0) connects to a cable modem via eth1
2004 Oct 19
1
Problem with Internal accessing internal via web
I am not a member of the mailing list.
Shorewall version 2.0.9
 ip addr show
1: lo: <LOOPBACK,UP> mtu 16436 qdisc noqueue
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 brd 127.255.255.255 scope host lo
    inet6 ::1/128 scope host
       valid_lft forever preferred_lft forever
4: eth0: <BROADCAST,MULTICAST,UP> mtu 1500 qdisc pfifo_fast qlen 1000
   
2004 Dec 11
5
Problem report -- shorewall 1.4
Hello list,
I wish to report a problem with openvpn tunnels. 
Synopsis:  Despite adding policies to the shorewall  policy file, I have
to add extra rules to allow the UDP port 5000 packets to get through.
I have used no particular setup guide.
I believe this problem goes away with shorewall 2.0.9, as I have
implemented openvpn with that version on a different machine, and I see
no UDP:5000 packet
2006 Jan 28
3
Shorewall/Xen setup (correct from-address this time)
(if this post gets line-feed-mangled please read
http://www.dl.reneschmidt.de/shorewallxenpost.txt - that''s an unmangled
version, thank you)
Hello,
first I would like to thank the Mr. Eastep and contributors for this great piece
of software and superb documentation.
I have a SOHO server (Debian testing) that I''m using for several purposes so
I''ve set up a Xen
2004 Aug 30
6
Shorewall upgrade messed up my firewall
Hi all,
I''m using Gentoo Linux Distribution and I''ve upgraded my firewall 
from Shorewall 1.4 to 2.0.4, however my LANs stop having internet 
access.
I have a server with shorewall 2.0.4 installed and 3 interfaces. 
eth0 and eth1 are interfaces to a LAN and to my laptop and eth2 
is the net interface.
I have masq like:
eth2                    eth0
eth2                    eth1
2005 May 30
2
Proxy ARP working from Internet but not from fw and loc
Hello everybody.
I could not find an answer to my problem in the archive. (But that may just
be me :-) )
I have a problem with proxy arp and connection from loc (localnet) and from
the firewall.
Works fine from internet to dmz / proxy arp and vise versa.
I have a feeling the solution is simple, but I''m no guru in Linux routing
etc.
The problem seems to be the routing setup.
loc -
2005 Feb 02
1
Masq errors?
Hi all,
I have a problem with a new Shorewall box I''m trying to migrate from 
iptables rules to shorewall 2.2.0.
I have a 3 interfaces setup:
- eth0 ---> internet (ip address)
- eth1 ---> remote office (10.0.0.0/8)
- eth2 ---> lan (192.168.16.0/24)
I''m using a very simple and common setup, with just a few DNAT rules in 
my /etc/shorewall/rules file, and about twenty
2005 May 30
13
RE: Proxy ARP working from Internet butnotfromfwand loc
Hi Alex, and thanks for your time.
Probably not.
The servers are only configured like they where when they where parallel to
the fw.
Just the default gateway, same as for the external interface on the fw.
That''s what the documentation instructed to configure the servers using arp.
But is it required with extra configuration on the server connected via
proxy arp?
Or is it some parameter
2005 Jun 24
9
WINS across two networks and a router
 Hello, everybody.  This one''s got me stumped.  What I''m trying to do is have 
two networks--192.168.1.0 and 192.168.2.0--with SMB and WINS running between 
them.  So far I can mount SMB shares allright, but I can''t browse by WINS 
names across the router.  I''ve posted this question on Linuxquestions.org; 
you''ll find the details there.
 Here are my
2005 Apr 02
11
bluetooth nap and internet access problem
Hello,
I''m trying to configure my desktop as a bluetooth network access point for my 
ipaq (as explained in http://www.stolk.org/debian/bluetooth.html).
I''m running shorewall version 2.2.1 on debian testing with a local network via 
eth0 and internet access via eth1. I''ve created a bridge br0 for eth0 and 
bnep0 and activated bridging in shorewall. dhcpd is listening
2005 Jan 07
8
Problem with bridging/routing on three interfaces and DNAT
Hello all,
I have a problem with external access to a postfix mailserver running on my
firewall as a mail-gateway. My setup with shorewall 2.2.0 rc4 is as follows:
eth0 is zone isf - this is an intranet to other companies
eth1 is zone loc - local network
eth2 is zone net - internet, fix ip adress
eth0 and eth1 are bridged
shorewall version
2.2.0-RC4
ip addr show
1: lo: <LOOPBACK,UP> mtu
2008 Jan 08
8
Shorewall and LVS-NAT (via fwmark) nat'd machines can't access the outside world directly
Hi guys, 
I''m not sure where to post for help on this one, shorewall or lvs, I''ll
start with shorewall (only cause Tom is a gun at this stuff, and is polite
enough to tell me to bugger off to the LVS list if I''m posting in the wrong
one ;)
I have a single box that is my router/firewall/LVS.
Internet -- eth0 - router/firewall - eth1 --- internal lan
				|
			eth2
2004 Oct 05
6
Something Changed?
Problem:
 
"Firewall" machine cannot get DNS but is allowing DNS through internally.
Something changed with the configuration but we''re not sure what.  Here is
the pertinent info: 
 
Shorewall Status Entries
Oct  5 09:24:50 all2all:REJECT:IN= OUT=eth2 SRC=192.168.7.55
DST=65.175.131.201 LEN=55 TOS=0x00 PREC=0x00 TTL=64 ID=50982 DF PROTO=UDP
SPT=32973 DPT=53 LEN=35 
Oct  5
2004 Oct 04
5
Bridge and routing question - complete email.
Here is the report and the complete diagram. And sorry for email problem and
incomplete email !
I have made new test.
Eth0 and eth2 are bridged.
I can ping NET from LAN
I can ping every firewall''s interface from LAN
I can ping eth1 from private LAN
I can ping everything from firewall
Bridging is activated in shorewall.conf
>From LAN i can ping 192.168.11.253 but not 192.168.11.254
2003 Apr 02
2
Allow ALL internal traffic
Hi all, 
its a real nightmare for me. Although i have read and searched the 
web for two weeks i can`t get shorewall to work. 
problem is that we have only one server that acts as fileserver (samba, nis, 
nfs) and router/firewall for the lan. the server has two interfaces eth0 = lan 
and eth1 = internet. 
 
The only what we need is full access from the lan to the firewall and 
restricted access
2005 Mar 06
1
3 Interface problem
Having a problem with the 3 interface setup.  I can get DMZ hosts, and
FW to see internet, but anything on LOC interface is unable to get
out.  My first post to the list didn''t have the information needed,
sorry for that, but thank you for pointing me to more resources.  I''ve
looked at the problem myself some more, but am still stuck.
Shorewall Version: 2.2.1
ip addr show
1: