Advertisement

08.09.2008 at 01:03PM PDT, ID: 23635353 | Points: 500
[x]
Attachment Details

TrixBox Firewall Config for Dynamic IP - DMZ on Netgear - not NAT'ed

Asked by andrejonker in Asterisk Open Source Telephony, DSL Lines / Cable Internet, Network Software Firewalls

Tags: , ,

Please refer to http://www.experts-exchange.com/Networking/Telecommunications/IP_Telephony/Asterisk_/Q_23533301.html

I am planning to use a Netgear ADSL router and to point the DMZ IP to my Trixbox machine.

My ADSL will still have a dynamic IP, but that shouldn't be a worry. I can use DynDNS if I need to, and I already use Hamachi to connect to the box from anywhere.

What I need to confirm is the Linux Firewall config on the Trixbox machine. I'd prefer to allow all outgoing requests and limit incoming to Asterisk and VoIP specific traffic. The web server I wish to protect, as I have no need to open it up to outside users, but I'll still need to access it, so if limiting web traffic to port 80 is OK, then I guess we can open it up too.

What would be an absolute first prize, is a link to the correct Trixbox config as advised by the authors, but I always end up looking in the wrong place on the Trixbox website somehow.

So second best would be a sample script with auto load on boot.

No scratch that - the very bestest answer would be one that'll 'teach a man how to fish'. In other words... how do I lock it all down and _detect_ what ports Trixbox wants, then open them up and save the config for reload.

Note: I installed WebMin on the box, maybe it helps... I don't know :-)


Start Free Trial
[+][-]08.10.2008 at 01:50AM PDT, ID: 22199103

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]08.10.2008 at 02:11AM PDT, ID: 22199122

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]08.10.2008 at 02:39AM PDT, ID: 22199165

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]08.10.2008 at 02:57AM PDT, ID: 22199207

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]08.10.2008 at 04:06AM PDT, ID: 22199288

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]08.10.2008 at 05:44AM PDT, ID: 22199442

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
 
Loading Advertisement...
20081112-EE-VQP-42 / EE_QW_2_20070628