From mboxrd@z Thu Jan 1 00:00:00 1970 From: Daniel Huhardeaux Subject: Re: Problems accessing port 3389 Date: Thu, 07 May 2009 12:07:51 +0200 Message-ID: <4A02B2F7.7040201@tootai.com> References: <4A0218DE.7020006@nwcascades.com> Mime-Version: 1.0 Content-Transfer-Encoding: QUOTED-PRINTABLE Return-path: In-Reply-To: <4A0218DE.7020006@nwcascades.com> Sender: netfilter-owner@vger.kernel.org List-ID: Content-Type: text/plain; charset="iso-8859-1"; format="flowed" To: netfilter@vger.kernel.org Hello Jack Lauman a =E9crit : > [...] > *mangle > :PREROUTING ACCEPT [53:5461] > :INPUT ACCEPT [25:2017] > :FORWARD ACCEPT [28:3444] > :OUTPUT ACCEPT [20:3542] > :POSTROUTING ACCEPT [45:6818] > COMMIT > # Completed on Wed May 6 15:48:13 2009 > # Generated by iptables-save v1.4.1.1 on Wed May 6 15:48:13 2009 > *filter > :INPUT DROP [2:89] > :FORWARD DROP [3:168] > :OUTPUT DROP [0:0] > :RH-Firewall-1-INPUT - [0:0] [...] > -A INPUT -p tcp -m state --state NEW -m tcp --dport 3389 -j ACCEPT Remove this line and should be OK. Traffic has not to come into eth0 bu= t=20 only prerouting+forward. [...] --=20 Daniel Huhardeaux _____ ____ ____ _____ _____ _ enum +33 368 460 088 (_ __) _ ) _ (_ __) _ _(_) +48 222 472 472 iaxtel 1-700-849-6983 / / / // / // / / / / /_/ / / GIZMO,SKYPE,GTAL= K sip/iax:callto 101@sip./_/ ( ___( ___/ /_/ (_/ (_/_/.net tootaiNET