In data lunedì 7 novembre 2022 21:12:36 CET, Yamaban ha scritto:
On Mon, 7 Nov 2022 20:00, Stakanov <stakanov@...> wrote:
In data lunedì 7 novembre 2022 18:49:00 CET, Andrei Borzenkov ha scritto:
On 07.11.2022 14:10, Stakanov wrote:
<snip>
in the zone public I did define following allowances
apcupsd dhcpv6-client ipp-client kdeconnect kdeconnect-kde samba-client sip sips upnp-client
On the truenas beforehand I could see: miniDLNA streaming samba as a service, reachable with user name and password I can reach sftp as ssh based service with username and password.
If I do not deactivate the fw I do see not a single service. If I currently deactivate the fw, although I am having trouble to make upnp miniDLNA work on vlc in TW I do actually see and am requested credentials for samba. So my problem is that I do not understand what else I have to define as allowed to make it work in the first place. I mean, the finetune to say i am using two interfaces, several zones etc. has sense for me only if I am able to get to work at least the local network behind the (in Germany I could nearly say "obvious" FritzBox router. Open ports I have defined in TW as follows (still to favor miniDLNA): TCP 9100 (for my printer share usb over router), 1714-1764 and 3551. And UDP 1714-1764.
SCTP and DCCP none.
Q: is "avahi" aka zeroconf installed?
Also, "avahi" is missing from your public zone
Whether "samba" or "samba-client" is the right choice I can't say.
Both could be a part of the issue.
HtH, Yamaban.
It appears that for TW firewalld settings, the avahi/zeroconf designation has been substituted with mdns. I have avahi installed. As a consequence putting mdns in allowed services seems to solve the issue. I do not know if the pure substitution to mdns was a majority decision taken on purpose to overcome the multiple designation. But if not, maybe I should file a bug against it, as users may be confused by this (or not, if they google it and go by trial and error). If anybody knows please educate me about it. Thank you. (I was anyway confused why there are three names for the very same thing)