cam asa arata firewalul: Chain PREROUTING (policy ACCEPT) target prot opt source destination DNAT tcp -- anywhere anywhere tcp dpt:5800 to:192.168.1.5:5800 DNAT tcp -- anywhere anywhere tcp dpt:5900 to:192.168.1.5:5900
Chain INPUT (policy ACCEPT) target prot opt source destination Chain FORWARD (policy ACCEPT) target prot opt source destination ACCEPT all -- 192.168.1.200 0.0.0.0/0 MAC 00:40:F4:87:8E:2B ACCEPT all -- 192.168.1.7 0.0.0.0/0 MAC 00:EE:B1:02:F9:54 ACCEPT all -- 192.168.1.5 0.0.0.0/0 MAC 00:40:F4:8C:55:76 ACCEPT all -- 192.168.1.252 0.0.0.0/0 MAC 00:40:F4:8C:55:32 ACCEPT all -- 192.168.1.3 0.0.0.0/0 MAC 00:30:84:87:9E:C8 ACCEPT all -- 192.168.1.6 0.0.0.0/0 MAC 00:10:5A:06:16:AC ACCEPT all -- 192.168.1.12 0.0.0.0/0 MAC 00:02:44:2A:9A:59 ACCEPT all -- 192.168.1.13 0.0.0.0/0 MAC 00:C0:26:80:7A:C1 ACCEPT all -- 192.168.1.16 0.0.0.0/0 MAC 00:E0:4C:77:DA:28 ACCEPT all -- 192.168.1.14 0.0.0.0/0 MAC 00:40:F4:68:F3:09 ACCEPT all -- 192.168.1.17 0.0.0.0/0 MAC 00:40:F4:85:A1:48 ACCEPT all -- 192.168.1.4 0.0.0.0/0 MAC 00:0A:E6:CA:B7:32 ACCEPT tcp -- 0.0.0.0/0 192.168.1.5 tcp dpt:5800 ACCEPT tcp -- 0.0.0.0/0 192.168.1.5 tcp dpt:5900 ACCEPT tcp -- 192.168.1.5 0.0.0.0/0 tcp spt:5800 ACCEPT tcp -- 192.168.1.5 0.0.0.0/0 tcp spt:5900 Chain OUTPUT (policy ACCEPT) target prot opt source destination cam asa arata firewalul... multsam.. ----- Original Message ----- From: "Coica Laurentiu" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, February 24, 2004 12:30 PM Subject: [rlug] Re: VPN si port forwarding. > Si s-ar putea sa mai ai nevoie de ceva de tipul: > iptables -I INPUT -i eth0 -p tcp --dport 5800 -j ACCEPT > iptables -I INPUT -i eth0 -p tcp --dport 5900 -j ACCEPT > (plus de ce-o mai fi nevoie, tinind cont de cum ai configurat firewall-ul) > > > Coica Laurentiu wrote: > > >Statia "din spate" cu vnc este x.2 sau .5 ? > >(spui ca e .2 dar faci nat la .5) > > > > > >[EMAIL PROTECTED] wrote: > > > > > > > >>Salut, > >>am incercat dar nu-mi iese de nici o culoare...se da un server(192.168.1.1) linux care face nat la x calculatoare...pe o statie locala (192.168.1.2) am instalat VNC server care asculta pe porturile 5800 si 5900 tcp. pe server am dat comenzile : > >>[EMAIL PROTECTED]:~# iptables -t nat -A PREROUTING -p tcp -i eth0 --dport 5800 -j DNAT --to-destination 192.168.1.5:5800 > >>[EMAIL PROTECTED]:~# iptables -t nat -A PREROUTING -p tcp -i eth0 --dport 5900 -j DNAT --to-destination 192.168.1.5:5900 > >>am incercat si fara -i eth0 (eth0 are ip de la isp si eth1 192.168.1.1) > >> > >>sta putin gandeste dar zice failed to connect to server. pe statia locala merge ok vnc...ceva sugestii? > >>multsam.. > >> > >> > >> > >> > >> > >> > >> > >> > > > > > > > > -- > Coica Laurentiu > CNL Oltenia > Targu-Jiu > > > --- > Detalii despre listele noastre de mail: http://www.lug.ro/ > > --- Detalii despre listele noastre de mail: http://www.lug.ro/
