[EMAIL PROTECTED] (Brook Humphrey) writes:

> On Tuesday 08 October 2002 02:16 am, Florin wrote:
> > > I found what it was that was blocking my system. I had host allow in my
> > > smb.conf and by default the new connection sharing put everything on a
> > > different internal i[ address which for some reason I can not change with
> > > the ics wizard or the net-setup wizard. so anyway I added to the smb.conf
> > > the extra ip to cover the new internal network and all works.
> >
> > you can use the advanced options and choose your IP address !??
> 
> Well not using the mandrake tools. Somehow through my truning the firewall on 
> then off then on and redoing the ics wizard a couple times to try and figure 
> out what was going on the ics wizard set the internal ip to 192.168.1.1 and 
> on the main internet page it reads as 191.168.0.1 but the interface is indeed 
> stuck on 192.168.1.1. I know it's strange indeed and  I have used the setup 
> wizard a few times also to change it back but for some reason it's
> decided to  stay were it is. 

it was NOT a question ... 

I TELL you you can use the advanced option to change the IP address. It
seems to me that you're talking about an older version of ics ... as the
latest version allows you in the advanced options to choose your IP
adress. If you use the standard one the IP adress will be 192.168.1.1 ...
this has changed from the previous versions that used 192.168.0.1 ...

> >
> > > One thing to note is that shorewall will eat the packets for samba if you
> > > run it on that machine. I have not tried to open that port as I don't
> > > want samba accessible to the outside world only those on the inside.
> >
> > grep -v ^# /etc/shorewall/rules ?
> 
> [root@gate webmedic]# grep -v ^# /etc/shorewall/rules
> ACCEPT  net     fw      tcp     80,443,20,21    -
> ACCEPT  masq    fw      tcp     80,443,20,21    -
> ACCEPT  loc     fw      tcp     80,443,20,21    -
> ACCEPT  masq    fw      tcp     
> domain,bootps,http,https,631,imap,pop3,smtp,nntp                                     
>   
> ,ntp    -
> ACCEPT  masq    fw      udp     
> domain,bootps,http,https,631,imap,pop3,smtp,nntp                                     
>   
> ,ntp    -
> ACCEPT  fw      masq    tcp     631,137,138,139 -
> ACCEPT  fw      masq    udp     631,137,138,139 -

ok, you seem to need some more lines as:

ACCEPT  fw  masq  udp  1024:  137 -

and eventually:
ACCEPT  masq  fw  udp  137,138,139
ACCEPT  masq  fw  tcp  137,138,139          
ACCEPT  masq  fw  udp  1024:  137

cheers,
-- 
Florin                  http://www.mandrakesoft.com
                        http://people.mandrakesoft.com/~florin/

Reply via email to