Linux Netfilter discussions
 help / color / mirror / Atom feed
From: ro0ot <ro0ot@phreaker.net>
To: Gianni Pucciani <gp.puccio@tin.it>
Cc: netfilter@lists.netfilter.org
Subject: Re: opening connection for Tomcat
Date: Fri, 09 Apr 2004 00:01:28 +0800	[thread overview]
Message-ID: <40757758.8060707@phreaker.net> (raw)
In-Reply-To: <40756C19.3010606@tin.it>

You should only have this below: -

iptables -A INPUT -p tcp -d <myprivateip> --dport 8080 -m state --state 
NEW -j ACCEPT

or

iptables -A INPUT -p tcp -s 0.0.0.0/0 --sport 1024: -d <myprivateip> 
--dport 8080 -m state --state NEW -j ACCEPT

Regards,
ro0ot

Gianni Pucciani wrote:

> Hi all,
> I was in trouble opening a port for services with tomcat:
> Is this rule right? I'm behind an adsl router that forward every 
> connection on port 8080 to <myprivateip>.
>
> iptables -P INPUT DROP
> iptables -P OUTPUT ACCEPT
> iptables -P FORWARD DROP
>
> iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT
> iptables -A INPUT -p tcp -d <myprivateip> --dport 8080 -s 0.0.0.0 -m 
> state --state NEW -j ACCEPT
>
>
>
>





  reply	other threads:[~2004-04-08 16:01 UTC|newest]

Thread overview: 15+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-04-08 15:13 opening connection for Tomcat Gianni Pucciani
2004-04-08 16:01 ` ro0ot [this message]
2004-04-08 16:30 ` Alexis
2004-04-08 17:50   ` Rob Sterenborg
2004-04-08 18:08     ` Alexis
2004-04-08 20:13     ` Gianni Pucciani
2004-04-08 21:53       ` Antony Stone
2004-04-08 23:18         ` Frank Gruellich
2004-04-09  6:28         ` Gianni Pucciani
2004-04-09  6:56           ` giorgio.zarrelli
2004-04-09 22:59             ` Antony Stone
2004-04-09  7:23           ` Rob Sterenborg
2004-04-09 13:50           ` Alexis
2004-04-09  1:05       ` Alexis
2004-04-08 17:55   ` Gianni Pucciani

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=40757758.8060707@phreaker.net \
    --to=ro0ot@phreaker.net \
    --cc=gp.puccio@tin.it \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox