Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

ipchains help

Posted on 2002-06-12
3
Medium Priority
?
301 Views
Last Modified: 2013-12-16
I recently configured sendmail and qpopper(pop3 server) on my Red Hat 7.2 machine.  Both those services seem to work correctly.  I only have trouble when I try to send email from that machine with the firewall up.  Receiving mail with the firewall up works fine though.  When the firewall is down though, both work correctly.  It is an ipchains firewall.

I would like to temporarily allow all traffic through the affected ports.  I have tried to do this using the following rules, but I have not succeeded.  Like I said, sending email while the firewall is up is not working.

As far a I know, this should allow the traffic that I need to go through.  Is there something I am missing that is not letting my attempts to send email from this box go through??

If these rules are correct, then there must be some other rule blocking my outgoing email traffic.  If that is the case, I don't know where to start in order to find the rule that is blocking my outbound email.  Any help would be greatly appreciated.(I'm pulling my hair out on this one!)  Thanks.


#PORT 53
ipchains -A output -s 0/0    -d 0/0 53 -p tcp -j ACCEPT
ipchains -A input  -s 0/0 53 -d 0/0    -p tcp -j ACCEPT
ipchains -A input  -s 0/0 53 -d 0/0    -p udp -j ACCEPT
ipchains -A output -s 0/0    -d 0/0 53 -p udp -j ACCEPT

#PORT 110
ipchains -A output -s 0/0 110 -d 0/0     -p tcp -j ACCEPT
ipchains -A input  -s 0/0     -d 0/0 110 -p tcp -j ACCEPT

#PORT 25
ipchains -A output -s 0/0 25 -d 0/0    -p tcp -j ACCEPT
ipchains -A input  -s 0/0    -d 0/0 25 -p tcp -j ACCEPT
0
Comment
Question by:barthalamu
  • 2
3 Comments
 
LVL 2

Expert Comment

by:wqclatre
ID: 7072425
try to add
ipchains -A input -p tcp ! -y -s 0/0 25 1024:65535 -j ACCEPT

to allow reply from the reciving mailservers.
0
 
LVL 2

Accepted Solution

by:
wqclatre earned 1000 total points
ID: 7072426
sorry missed one thing.

ipchains -A input -p tcp ! -y -s 0/0 25  -d ip_of_mailserver 1024:65535 -j ACCEPT

should it be.

0
 

Author Comment

by:barthalamu
ID: 7073478
Well, that didn't work...but it got me going on the right track.  I ended up making both of my SMPT bidirectional, (with the -b parameter) and that worked.  Thanks a lot for your help.
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
In part one, we reviewed the prerequisites required for installing SQL Server vNext. In this part we will explore how to install Microsoft's SQL Server on Ubuntu 16.04.
Learn several ways to interact with files and get file information from the bash shell. ls lists the contents of a directory: Using the -a flag displays hidden files: Using the -l flag formats the output in a long list: The file command gives us mor…
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.
Suggested Courses
Course of the Month9 days, 14 hours left to enroll

927 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question