[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [suse-security] Susefirewall2 rdp access nightmare
On Thursday 06 October 2005 09:46, engelbert.gruber@xxxxxxxxx wrote:
> how is you rnetwork layout ?
> internet --- fw --- internal
> where are the rdp servers (from above it sounds like one is internal and
> some are external).
> do you have NAT active ? if so you need something to forward connections
> to the inside server.
> try from internal first :
> * is protect from internal active ?
> * is routing active ?
220.127.116.11/24 is internal <--> 18.104.22.168---$EXTIP <--> Internet
I have a pc 22.214.171.124 <--> 126.96.36.199 -- $EXTIP <---> Internet <-->
I have added these rules as suggested earlier by Taras (Thanks)
I can access the remote PC over the internet, But it still can't access my
iptables -t nat -A PREROUTING -i eth1 -p tcp -s 0/0 -d 188.8.131.52 --dport
3389 -j DNAT --to-destination 184.108.40.206:3389
iptables -t nat -A POSTROUTING -s 220.127.116.11/24 -o eth1 -j SNAT --to-source
iptables -A FORWARD -s 18.104.22.168 -d 0/0 -j ACCEPT
Seems I am missing a redirect or something?
Production Line Superintendant
Manufacturers of Proline Computers
Exercise freedom, Use LINUX
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-help@xxxxxxxx
Security-related bug reports go to security@xxxxxxx, not here