IPTables configuration for SSH



Hi all,

Im trying to pass through SSH through a firewall using IPTables. I
have got the passthrough working, however SSH does not still work.

I think it may be the following rule that is messing it up, could
anyone confirm this please:

Only allow connections inbound that are already established or related
through. All outbound are.


At the moment i can connect to the machine from inside the firewall so
i know ssh is running correct

I know port forwarding to a http server works, but to the ssh server
the connection times out?

Any ideas? Maybe people could send me the rules they use, for passing
SSH through to an internal machine?

Thanks in advance for your help and patience reading this

David

.



Relevant Pages

  • Re: [fw-wiz] Is NAT in OpenBSD PF UPnP enabled or Non UPnP?
    ... >> I start by not giving logins and SSH access to users I don't trust. ... a network topology which goes around the ... >> firewall and thus is a serious hole to network security. ... >> have access via UPnP to, well, anything that device might happen to ...
    (Firewall-Wizards)
  • Re: ssh attempts
    ... the excellent iptables firewall you probably already have on your system. ... consider changing the port SSH listens on. ... Login to account webmaster not allowed or account non-existent. ... Computer Emergency Response Teams, and Digital Investigations. ...
    (Security-Basics)
  • Re: mpich and iptables firewall?
    ... to me it seems a very weird setup to have a firewall running ... on the cluster nodes. ... Using SGE you could disable rsh and ssh completely ... Chain FORWARD ...
    (comp.parallel.mpi)
  • Re: Problems with ipfw and ssh
    ... I get this error when updating my firewall rules via ssh. ... ${addcmd} 50 allow all from any to any via lo0 ... debug1: PAM: cleanup ...
    (freebsd-questions)
  • Re: OpenSSH through a Firewall
    ... >> I have an ssh through a firewall problem which I think should be easy to ... >> so the basic recap is I have a client on the internet which connects to ... What I did is setup the internal machine to use ...
    (comp.security.ssh)