![]() |
|
|
#1 (permalink) |
|
Registered Member
Join Date: Apr 2007
Location: Annapolis, MD
Posts: 73
|
iptables problem
Hey guys-- I hope shmoocon went well. I have been hard at work here on a few projects of mine, and was wondering if anyone could give me some insight as to why this configuration file was not working correctly.
Code:
#! /bin/bash # iptables configuration file for projectobvious.com # Enable stateful filtering allowing connections initiated on host be allowed. iptables -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT iptables -A OUTPUT -m state --state NEW,RELATED,ESTABLISHED -j ACCEPT # Allow Incoming SSH on port 22 iptables -A INPUT -p tcp -m tcp --dport 22 -j ACCEPT # Prevent brute-forcing of SSH connections. iptables -A INPUT -p tcp --dport 22 -m state --state NEW -m recent --set --name SSH iptables -A INPUT -p tcp --dport 22 -m state --state NEW -m recent --update --seconds 60 --hitcount 8 --rttl --name SSH -j DROP # Allow Everything from the local host iptables -A INPUT -s 127.0.0.1 -j ACCEPT # Block Outgoing SSH connections to prevent connection bouncing iptables -A OUTPUT -p tcp -m tcp --dport 22 -j DROP # Block Everything else iptables -A INPUT -j DROP iptables -A FORWARD -j DROP
__________________
-AR Please be offended by my post. "Well, someone scraped the bottom of the gene pool when they made her." "Don't you usually vacuum that kinda stuff up?" |
|
|
|
|
|
#2 (permalink) |
|
Psychic Amish Stumbler
Join Date: Jul 2004
Location: Virginville, BlueBall, Bird In Hand, Intercourse, Paradise, PA
Posts: 11,592
|
Shmoocon is this weekend, I thought you were going to make it.
__________________
"One of these days, I'm going to cut you to pieces." If you're offended by this post, please feel free to report it to one of the many helpful moderators of this forum. Thank you. |
|
|
|
|
|
#3 (permalink) | ||
|
Registered Member
Join Date: Apr 2007
Location: Annapolis, MD
Posts: 73
|
Hey Streaker--
I meant to say "goes well." I actually cannot make it, as the Navy has me doing a few other things this coming weekend. I also figured out my iptables problem, but thanks anyway. Quote:
Quote:
__________________
-AR Please be offended by my post. "Well, someone scraped the bottom of the gene pool when they made her." "Don't you usually vacuum that kinda stuff up?" |
||
|
|
|
|
|
#4 (permalink) |
|
Psychic Amish Stumbler
Join Date: Jul 2004
Location: Virginville, BlueBall, Bird In Hand, Intercourse, Paradise, PA
Posts: 11,592
|
I think you need to get your priorities straight. what's more important? Your career with the navy or coming out and having some beer with a bunch of nutcases you only know from the inturweb?
__________________
"One of these days, I'm going to cut you to pieces." If you're offended by this post, please feel free to report it to one of the many helpful moderators of this forum. Thank you. |
|
|
|
|
|
#5 (permalink) | |
|
My search-fu is weak!
Join Date: Jun 2002
Location: West BFE, Texas
Posts: 406
|
Quote:
![]() Just found out that when I get finished in Denver, I'm going to Johnson City, TN. Bleh.
__________________
--- <#include std.disclaimer.h> AltarThug of Wired and Unwired, The Church of WiFi http://www.churchofwifi.org http://www.linuxisforbitches.com http://www.wigle.net http://www.kismetwireless.net |
|
|
|
|
|
|
#6 (permalink) | |
|
Dirty Ol' Man
Join Date: Jan 2006
Location: If you find out, let me know!
Posts: 412
|
Quote:
In any case, he's going to be doing a RED TEAM this weekend so he may end up having more fun than us. |
|
|
|
|
|
|
#7 (permalink) | |
|
Cajun from Hell
Join Date: Feb 2005
Location: Capitol City, Louisiana
Posts: 2,998
|
Quote:
![]()
__________________
No I do not. I live in my own basement. |
|
|
|
|
|
|
#8 (permalink) | |
|
Registered Member
Join Date: Apr 2007
Location: Annapolis, MD
Posts: 73
|
Quote:
I'll definitely be at next year's though!
__________________
-AR Please be offended by my post. "Well, someone scraped the bottom of the gene pool when they made her." "Don't you usually vacuum that kinda stuff up?" |
|
|
|
|