Firewall2 : How to open and close ports
I finally have the firewall up but after doing an nmap localhost I found
several ports open that should not be. How do I close the ports? How do I
open the ftp port? I have already modified firewall2.rc.config and added
the "ftp" to the list of ports allowed. Interestingly enough the open ports
do not correspond the ones in firewall.rc.config. Any ideas? Is there a
gui for SuSEFirewall2? AGGGHHHH!
Jacob Fierberg
Help Desk
Teacher's Pal, Inc
jacobf@teacherspal.com
www.teacherspal.com
On Tuesday 10 September 2002 20.38, Jacob Fierberg wrote:
I finally have the firewall up but after doing an nmap localhost I found several ports open that should not be.
Don't do an an nmap against the localhost. You'll get a completely misleading result. The firewall only protects against connections from other machines, not from connections from itself. So, as an example, even though my firewall blocks port 515 I'm still perfectly able to print fron localhost. Even though I block port 80 I'm still perfectly able to browse my local pages from localhost. If you want to verify your firewall, find another machine and nmap from there. regards Anders
At 21:38 10/09/2002 , Jacob Fierberg wrote:
I finally have the firewall up but after doing an nmap localhost I found several ports open that should not be. How do I close the ports? How do I open the ftp port? I have already modified firewall2.rc.config and added the "ftp" to the list of ports allowed. Interestingly enough the open ports do not correspond the ones in firewall.rc.config. Any ideas? Is there a gui for SuSEFirewall2? AGGGHHHH!
Are you *really* firewalling the loopback interface on localhost? Or more likely an ethernet port, or ppp port (ie external interfaces). You need to run nmap from another machine on the external network, aimed at the ip address of your external interface. Running nmap on localhost will not tell you anything about how your firewall is behaving on the external interface. Tony
participants (3)
-
Anders Johansson
-
Jacob Fierberg
-
Tony White