> Je soup�onne le parefeu de mdk 9 (drakfirewall) d'�tre le coupable.
> Dans celui-ci, par d�faut, seuls Serveur de courrier et CUPS sont coch�s.
>
> J'ai (par mcc => s�curit� => parefeu), coch�:
> -Serveur Web
> -FTP
> -Serveur de courrier
> -Serveur POP et Imap
>
> mais ces r�glages ne sont pas gard�s en m�moire.


Voil� les fichiers de conf de shorewall, regarde les messages de Pierre Lo
Cicero ces derniers jours, il a mis les mains dans le cambouis...
  a.. /etc/shorewall/shorewall.conf - used to set several firewall
parameters.
  b.. /etc/shorewall/params - use this file to set shell variables that you
will expand in other files.
  c.. /etc/shorewall/zones - partition the firewall's view of the world into
zones.
  d.. /etc/shorewall/policy - establishes firewall high-level policy.
  e.. /etc/shorewall/interfaces - describes the interfaces on the firewall
system.
  f.. /etc/shorewall/hosts - allows defining zones in terms of individual
hosts and subnetworks.
  g.. /etc/shorewall/maclist - verification of the MAC addresses of devices.

  h.. /etc/shorewall/masq - directs the firewall where to use many-to-one
(dynamic) NAT a.k.a. Masquerading.
  i.. /etc/shorewall/modules - directs the firewall to load kernel modules.
  j.. /etc/shorewall/rules - defines rules that are exceptions to the
overall policies established in /etc/shorewall/policy.
  k.. /etc/shorewall/nat - defines static NAT rules.
  l.. /etc/shorewall/proxyarp - defines use of Proxy ARP.
  m.. /etc/shorewall/routestopped (Shorewall 1.3.4 and later) - defines
hosts accessible when Shorewall is stopped.
  n.. /etc/shorewall/tcrules - defines marking of packets for later use by
traffic control/shaping.
  o.. /etc/shorewall/tos - defines rules for setting the TOS field in packet
headers.
  p.. /etc/shorewall/tunnels - defines IPSEC tunnels with end-points on the
firewall system.
  q.. /etc/shorewall/blacklist - lists blacklisted IP/subnet/MAC addresses.



Vous souhaitez acquerir votre Pack ou des Services MandrakeSoft?
Rendez-vous sur "http://www.mandrakestore.com";

Répondre à