Helo.

I´m from Brazil.

I´m tested the Endian Firewall and I´m very satisfied.

The only problem this with a service of the federal government saving bank
of Brazil.
 
it is a service data-communication between company and offices of accounting
and the federal government.

this service uses port 80 (but it is not HTTP) and java of the Microsoft, I
read in the site of the government and forum that not funicona with proxy
squid.

I already have firewall IPTables + Squid Proxy + Dansguardian and can decide
these problems in two different ways:

 1) liberating a computer (what he goes to use this service) of proxy, with
the following rule:

 # iptables -t nat -A PREROUTING -i eth1 -s \! 192.168.1.53 -p tcp --dport
80 -j REDIRECT --to-port 3128


 2)  second it is liberating the access to one range of IPs that enters they
this of the servers of the box, I know that elegente is not nothing nor
insurance, but functions.

  # ciptables -t nat -A PREROUTING -p tcp -d 200.201.0.0/16 -j ACCEPT
  # iptables -A FORWARD -p tcp -d 200.201.0.0/16 -j ACCEPT

The addresses of servers of the government are: 200.201.174.204 and
200.201.174.207 

What need is: 
 
To liberate the access the these servers, all the access, or the expecíficas
ports,

already I tried the rules of outgoing, but the problems really are with
squid proxy, then I have that to leave these addresses it are of proxy, or a
computer is of proxy, but still inside of the LAN11

Trusting the power of the community I always wait aid

tank you

Melek

 

-- 
View this message in context: 
http://www.nabble.com/Service-of-Caixa.gov.br-From-Brazil-tf2841924.html#a7935134
Sent from the efw-user mailing list archive at Nabble.com.


-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys - and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Efw-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/efw-user

Reply via email to