I have installed transparent squid proxy server with necessary firewall script not to allow any request from outside and unknown request using the following commands
#----------Blocking unknown request----------------------
iptables -A INPUT -i eth0 -p tcp --syn -j DROP
#---------Blocking Incoming outside request--------------
iptables -A INPUT -p tcp --destination-port 3128 -i eth0 -j DROP
but now i want to allow one IP(head office ip) with all ports to access. Can any one tell me what's the command
Firewall Tunning
-
- Battalion Quarter Master Havaldaar
- Posts: 228
- Joined: Fri Jan 28, 2005 6:23 pm
- Location: Karachi
salam
Dear ilias,
Try this bro,
iptables -A INPUT -p tcp -i eth0 --source 192.168.0.1 -j ACCEPT
and check this
http://www.faqs.org/docs/linux_network/ ... ample.html
Regards,
M Asad Rasheed
Try this bro,
iptables -A INPUT -p tcp -i eth0 --source 192.168.0.1 -j ACCEPT
and check this
http://www.faqs.org/docs/linux_network/ ... ample.html
Regards,
M Asad Rasheed
registered linux user #394856
http://www.bsdpakistan.org
http://www.bsdpakistan.org
-
- Site Admin
- Posts: 5132
- Joined: Fri May 02, 2003 10:24 am
- Location: Karachi
- Contact:
Re:
Dear ilias,
Salam,
# iptables -I INPUT -s 192.168.0.1 -i eth0 -j ACCEPT
Best Regards.
Salam,
I think he should need udp protocol as well if he doing voice communication and also for DNS queries !!AsadRasheed wrote:iptables -A INPUT -p tcp -i eth0 --source 192.168.0.1 -j ACCEPT
# iptables -I INPUT -s 192.168.0.1 -i eth0 -j ACCEPT
Best Regards.
Farrukh Ahmed
-
- Battalion Quarter Master Havaldaar
- Posts: 228
- Joined: Fri Jan 28, 2005 6:23 pm
- Location: Karachi
Re:
May be , who knows.LinuxFreaK wrote:Dear ilias,
Salam,
I think he should need udp protocol as well if he doing voice communication and also for DNS queries !!AsadRasheed wrote:iptables -A INPUT -p tcp -i eth0 --source 192.168.0.1 -j ACCEPT
# iptables -I INPUT -s 192.168.0.1 -i eth0 -j ACCEPT
Best Regards.
Regards,
M Asad Rasheed
registered linux user #394856
http://www.bsdpakistan.org
http://www.bsdpakistan.org
-
- Site Admin
- Posts: 5132
- Joined: Fri May 02, 2003 10:24 am
- Location: Karachi
- Contact:
Re:
Dear lambda,
Hello,
Best Regards.
Hello,
Right but its just for an example !!lambda wrote:input rules make no sense at all here. he should use forward or postrouting rules.
Best Regards.
Farrukh Ahmed