camun
(usa Ubuntu)
Enviado em 06/05/2014 - 17:10h
galera estou tentando a dois dias liberar a porta 465 e 995 no meu servidor para utilizar o outlook 2013 e nao consigo, faço teste com o nmap -p 995 192.168.1.1 e so retorna que esta fechada, de uma olhada nas quantidades de regras que adicionei no FW para tentar abrir a porta e nada vou postar abaixo somente a porta 995 para vcs terem uma ideia do que pos ser
$IPTABLES -A INPUT -p tcp --destination-port 995 -j ACCEPT
$IPTABLES -A FORWARD -s 192.168.1.0/24 -p tcp --dport 995 -j ACCEPT
$IPTABLES -A INPUT -i eth0 -p tcp --dport 995 -m state --state NEW,ESTABLISHED -j ACCEPT
$IPTABLES -A OUTPUT -o eth0 -p tcp --sport 995 -m state --state ESTABLISHED -j ACCEPT
$IPTABLES -t nat -A PREROUTING -p tcp -d $IPEXTERNO --dport 995 -j DNAT --to-destination 192.168.1.1
$IPTABLES -A INPUT -p tcp -s 0/0 -d $IPEXTERNO --dport 995 -j ACCEPT
$IPTABLES -A FORWARD -p tcp -d 192.168.1.1 --dport 995 -j ACCEPT
$IPTABLES -t nat -A PREROUTING -d $IPEXTERNO -p tcp --dport 995 -j DNAT --to-destination 192.168.1.1:995
$IPTABLES -t nat -A PREROUTING -p tcp -d $IPEXTERNO --dport 995 -j DNAT --to-destination 192.168.1.1
$IPTABLES -A INPUT -p tcp -s 0/0 -d $IPEXTERNO --dport 995 -j ACCEPT
$IPTABLES -A FORWARD -p tcp -d 192.168.1.1 --dport 995 -j ACCEPT
$IPTABLES -t nat -A PREROUTING -d $IPEXTERNO -p tcp --dport 995 -j DNAT --to-destination 192.168.1.1:995
$IPTABLES -A INPUT -i eth0 -p tcp --dport 995 -m state --state NEW,ESTABLISHED -j ACCEPT
$IPTABLES -A OUTPUT -o eth0 -p tcp --sport 995 -m state --state ESTABLISHED -j ACCEPT
$IPTABLES -A INPUT -p tcp -s $NETH0 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A FORWARD -p tcp -s $NETH0 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p udp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A OUTPUT -p tcp -d $IPETH1 --destination-port 995 -j ACCEPT
$IPTABLES -A INPUT -p tcp -d $IPETH1 --destination-port 995 -j ACCEPT
$IPTABLES -A OUTPUT -p udp -d $IPETH1 --destination-port 995 -j ACCEPT
$IPTABLES -A INPUT -p udp -d $IPETH1 --destination-port 995 -j ACCEPT
$IPTABLES -A OUTPUT -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A FORWARD -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp -s $IPETH1 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp -s $NETH0 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A OUTPUT -p tcp -s $IPETH1 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A OUTPUT -p tcp --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A FORWARD -p tcp -s $NETH0 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p tcp -s $IPEXTERNO/29 --destination-port 995 -m state --state NEW -j ACCEPT
$IPTABLES -A INPUT -p udp -s $IPEXTERNO/29 --destination-port 995 -m state --state NEW -j ACCEPT
AI quando rodo o compmando nmpa -p 995 192.168.1.1 olha o q retorna
root@lxlabet:~# nmap -p 995 192.168.1.1
Starting Nmap 5.21 (
http://nmap.org ) at 2014-05-06 17:07 BRT
Nmap scan report for labet (192.168.1.1)
Host is up (0.000041s latency).
PORT STATE SERVICE
995/tcp closed pop3s
Nmap done: 1 IP address (1 host up) scanned in 0.06 seconds
root@lxlabet:~#