Shorewall for web server?

Louis Lagendijk louis at lagendijk.xs4all.nl
Mon Dec 26 13:25:46 UTC 2005


On Mon, 2005-12-26 at 12:45 +0000, Timothy Murphy wrote:
> Dec 26 10:13:47 alfred kernel: Shorewall:net2all:DROP:IN=ppp0 OUT= 
> MAC= SRC=80.231.0.106 DST=86.43.71.228 LEN=48 TOS=0x00 PREC=0x00 
> TTL=117 ID=58867 DF PROTO=TCP SPT=3849 DPT=1433 
> WINDOW=16384 RES=0x00 SYN URGP=0
> 
This message is not related to you httpd: this is somebody trying to
connect to MS-SQL on your machine...

How are you connecting to the internet: through ppp0? Why are you using
DNAT? If you have the fixed IP address on ppp0, all you need to do is
setting the appropriate ALLOW rule:
AllowWeb	net	fw
as you don't need to forward traffic to another machine.

Louis




More information about the users mailing list