Re: (PM) Filters AGAIN...

Jay Hennigan (jay@west.net)
Wed, 27 May 1998 23:08:24 -0700 (PDT)

On Thu, 28 May 1998, Martin Rheumer wrote:

> I have tried and tried to get a grasp on this and would
> love if someone said oh you idiot do this..

Oh, you idiot ;-) you haven't permitted anything. If a filter exists,
there's an implicit "deny everything" at the end.

> I have the following rules...
>
> 1 deny 0.0.0.0/0 0.0.0.0/0 tcp dst eq 137
> 2 deny 0.0.0.0/0 0.0.0.0/0 tcp dst eq 138
> 3 deny 0.0.0.0/0 0.0.0.0/0 tcp dst eq 139

add:

4 permit 0.0.0.0/0 0.0.0.0/0 tcp
5 permit 0.0.0.0/0 0.0.0.0/0 udp
6 permit 0.0.0.0/0 0.0.0.0/0 icmp

-- Jay Hennigan jay@west.net 805-884-6323 --
WestNet: Internet service to Santa Barbara, Ventura and the world.

-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.
Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>