Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Feb 2003 09:07:51 -0300 (ART)
From:      Fernando Gleiser <fgleiser@cactus.fi.uba.ar>
To:        Redmond Militante <r-militante@northwestern.edu>
Cc:        freebsd-security@freebsd.org
Subject:   Re: n00b ipf/ipnat questions
Message-ID:  <20030211090154.R30313-100000@cactus.fi.uba.ar>
In-Reply-To: <20030211002256.GA824@darkpossum>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, 10 Feb 2003, Redmond Militante wrote:
>
> i've managed to get it nat'ing one machine so far, the webserver. the public
> ip of the webserver is aliased to the external nic on the gateway machine.
> httpd and ftp work ok behind the gateway box.  i have many questions,
> however.  the first being why - despite the firewall rules i have in place
> on the gateway, when i nmap the public ip of the webserver it shows me all
> sorts of ports being open.  i can't make out from my gateway configuration
> where this is happening.

What ports? is it TCP or UDP? UDP scanning is very prone to false positives.
It would help if you post the nmap flags line you're using and the results,
obsfuscate the IP if you don't want us to know it.

Another posibility is some interception/transparent proxy on your ISP.


			Fer

>
> any advice would be appreciated
>
> thanks
> redmond
>


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030211090154.R30313-100000>