Hosts.allow and Hosts.deny

mgcon@mail.neta.com mgcon@mail.neta.com
Sun, 30 Jul 2000 21:24:45 -0700 (MST)


I would keep hosts.deny;
ALL:ALL
Then, on your hosts.allow;
ALL: 192.168.0

If you want multiple net's on a line, seperate them by commas.
You might also want to specify just the services instead of ALL. remeber
to seperate those as well by commas;
ftpd, sshd,  smbd, nmbd: 192.168.0.

Then, run 'tcpdchk'.

Hope this helps:
Mike

> 
> This is a multi-part message in MIME format.
> 
> ------=_NextPart_000_0013_01BFFA61.E1E64700
> Content-Type: text/plain;
> 	charset="iso-8859-1"
> Content-Transfer-Encoding: quoted-printable
> 
> Alright maybe I am a little slow but I thought I had this under control =
> at one point, now it all seems to be different. I have my firewall =
> working, but I have been having problems with FTP, telnet, swat, etc =
> working for the internal network. I have been working with the firewall =
> thinking it was there. I just ran a test that makes everything I thought =
> was either wrong or incorrect. Here it goes:
> 
> My hosts.deny file has the following line:
> 
> ALL:    ALL
> 
> My hosts.allow has the following lines:
> 
> ALL:    127.0.0.1    192.168.0.
> swat:    127.0.0.1    192.168.0.
> 
> I can not get any of the services to work on the internal network. FTP =
> and telnet will not work to the Linux box, nor will swat. I have tried =
> the following lines as well and they did not work either:
> 
> ftp:    127.0.0.1    192.168.0.
> telnet:    127.0.0.1    192.168.0.
> 
> What am I missing?
> 
> Thank you,
> 
> David
> 
> ------=_NextPart_000_0013_01BFFA61.E1E64700
> Content-Type: text/html;
> 	charset="iso-8859-1"
> Content-Transfer-Encoding: quoted-printable
> 
> <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
> <HTML><HEAD>
> <META content=3D"text/html; charset=3Diso-8859-1" =
> http-equiv=3DContent-Type>
> <META content=3D"MSHTML 5.00.2722.2800" name=3DGENERATOR>
> <STYLE></STYLE>
> </HEAD>
> <BODY bgColor=3D#ffffff>
> <DIV><FONT face=3DArial size=3D2>Alright maybe I am a little slow but I =
> thought I=20
> had this under control at one point, now it all seems to be different. I =
> have my=20
> firewall working, but I have been having problems with FTP, telnet, =
> swat, etc=20
> working for the internal network. I have been working with the firewall =
> thinking=20
> it was there. I just ran a test that makes everything I thought was =
> either wrong=20
> or incorrect. Here it goes:</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>My hosts.deny file has the following=20
> line:</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>ALL:&nbsp;&nbsp;&nbsp; ALL</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>My hosts.allow has the following=20
> lines:</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>ALL:&nbsp;&nbsp;&nbsp; =
> 127.0.0.1&nbsp;&nbsp;&nbsp;=20
> 192.168.0.</FONT></DIV>
> <DIV><FONT face=3DArial size=3D2>swat:&nbsp;&nbsp;&nbsp; =
> 127.0.0.1&nbsp;&nbsp;&nbsp;=20
> 192.168.0.</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>I can not get any of the services to =
> work on the=20
> internal network. FTP and telnet will not work to the Linux box, nor =
> will swat.=20
> I have tried the following lines as well and they did not work=20
> either:</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV><FONT face=3DArial size=3D2>
> <DIV><FONT face=3DArial size=3D2>ftp:&nbsp;&nbsp;&nbsp; =
> 127.0.0.1&nbsp;&nbsp;&nbsp;=20
> 192.168.0.</FONT></DIV>
> <DIV>
> <DIV><FONT face=3DArial size=3D2>telnet:&nbsp;&nbsp;&nbsp;=20
> 127.0.0.1&nbsp;&nbsp;&nbsp; 192.168.0.</FONT></DIV>
> <DIV>&nbsp;</DIV>
> <DIV>What am I missing?</DIV>
> <DIV>&nbsp;</DIV>
> <DIV>Thank you,</DIV>
> <DIV>&nbsp;</DIV>
> <DIV>David</DIV></DIV></FONT></DIV></BODY></HTML>
> 
> ------=_NextPart_000_0013_01BFFA61.E1E64700--
> 
> 
> _______________________________________________
> Plug-discuss mailing list  -  Plug-discuss@lists.PLUG.phoenix.az.us
> http://lists.PLUG.phoenix.az.us/mailman/listinfo/plug-discuss
>