Re: Iptables and SAMBA - I'm going MAAAAAAAAAAAAAAAAAADDDDDDD!!!

From: joseph philip (joseph_at_nntp.will.suffice)
Date: 11/14/03


Date: Thu, 13 Nov 2003 22:44:03 -0500

On Thu, 13 Nov 2003 18:33:07 +0000, Arsenio Lupin wrote:

> Hi,
>
> i'm trying to setup a firewall with netfilter/iptables increasing security
> from than one i actually have, on the linux box i use to share my adsl modem
> (USB). On this linux box i have two net cards that go to two clients
> (the two subnets: 192.168.0.x/255.255.255.0 and 10.0.0.x/255.255.255.0).
>
>
> The script works well, but it doesn't work at all with my samba share.
>
> (samba works perfectly if i shut down iptables)
>
>
>
> Can someone help me to access SAMBA?
>
>
>
>
>
> Thanks!
>

samba uses tcp and udp ports in the range 137 to 139.

You basically need:

Allow outbound on lan1 from 137-139 tcp
Allow outbound on lan1 from 137-139 udp
Allow inbound on lan1 from 137-139 tcp
Allow inbound on lan1 from 137-139 udp

Allow outbound on lan2 from 137-139 tcp
Allow outbound on lan2 from 137-139 udp
Allow inbound on lan2 from 137-139 tcp
Allow inbound on lan2 from 137-139 udp

allow forward when source is lan1 and dst is lan2
allow forward when source is lan2 and dst is lan1



Relevant Pages