At 03:57 PM 2/16/2006 -0700, you wrote:

>Wow, that is a ton of information in one message and very insightful.

        18 years of grief distilled into a few paragraphs. :-)

>have a hardware firewall attached that is a NAT device that I can access
>via a web interface through my hosts web control panel. The only problem
>is that it is somewhat restrictive regarding the rules that can be set
>up. It uses rule sets similar to ipSec but is limited in how many can be
>set up and as with ipSec only one port at a time.

        You're in trouble.  HLDS is going to require a few inbound
ports, but a basic NAT rule should cover the return traffic.  If it's
not working for you, I'd contact the ISP and see what can be done.

>My capacity to set up another Hardware firewall being somewhat limited
>by my situation I was hoping for another option. I really do not like
>the idea of a software firewall but if it could do the job I could live
>with it.

        It won't, I'm afraid.  If I've a hardware firewall it's
between you and the internet, and it's protecting multiple hosts.
I'm not about to do an any-any rule for your host and hope your
software firewall handles an attack and poke one major hole in my
security.  Rather, I'd suggest you open up a trouble ticket with
your ISP, explain you're wanting to run a HL2 engine, and let them
write up an appropriate rule-set to allow, say, 20715-20779udp inbound
and have the outbound NAT rule cover the server send portion.  Web
has no need for UDP packets so this would be a separate issue.
It's only if you want multiple things listening on, say, port 80
that you'll require the 1-1 NATs.  From what you're telling me,
it's not a firewall problem so much as a lack of knowledge as to
how to set the rule-base up in the firewall to give you what you need.

        You're paying for this service.  Insist that they abide
by their end of the deal, monitor, and adjust.  Compared to h.323
and netmeeting traffic, HLDS is a breeze for a firewall admin.

        Good luck.

                - Dan

* Dan Sorenson      DoD #1066      A.H.M.C. #35     [EMAIL PROTECTED] *
* Vikings?  There ain't no vikings here.  Just us honest farmers.   *
* The town was burning, the villagers were dead.  They didn't need  *
* those sheep anyway.  That's our story and we're sticking to it.   *


_______________________________________________
To unsubscribe, edit your list preferences, or view the list archives, please 
visit:
http://list.valvesoftware.com/mailman/listinfo/hlds

Reply via email to