I have samba 3.3 on my 8.1 box. I am running IPFW. I can connect to samba over my VPN but I can not connectto it through normal means nor can I get smbclient to show resources I have asked else where but perhaps mis-stated the subject
my ipfw.rules are
IPFW Show
my ipfw.rules are
Code:
KS="keep-state"
IPF="ipfw -q add"
ipfw -q -f flush
#loopback
$IPF 10 allow all from any to any via lo0
#$IPF 11 allow all from any to any via re0
#$IPF 12 allow all from any to any via re0_alias
$IPF 15 allow all from any to any via tap0
$IPF 20 deny all from any to 127.0.0.0/8
$IPF 30 deny all from 127.0.0.0/8 to any
$IPF 35 allow all from any to 10.8.0.0/24
$IPF 37 allow all from 10.8.0.0/24 to any
$IPF 40 deny tcp from any to any frag
# statefull
$IPF 50 check-state
$IPF 60 allow tcp from any to any established
$IPF 70 allow all from any to any out keep-state
$IPF 80 allow icmp from any to any
# open port ftp (20,21), ssh (22), mail (25)
# http (80), dns (53) etc
$IPF 110 allow tcp from any to any 21 in
$IPF 120 allow tcp from any to any 21 out
$IPF 130 allow tcp from any to any 22 in
$IPF 140 allow tcp from any to any 22 out
$IPF 150 allow tcp from any to any 25 in
$IPF 160 allow tcp from any to any 25 out
$IPF 170 allow udp from any to any 53 in
$IPF 175 allow tcp from any to any 53 in
$IPF 180 allow udp from any to any 53 out
$IPF 185 allow tcp from any to any 53 out
$IPF 200 allow tcp from any to any 80 in
$IPF 210 allow tcp from any to any 80 out
$IPF 211 allow udp from any to any 137 in
$IPF 212 allow tcp from any to any 137 in
$IPF 213 allow udp from any to any 137 out
$IPF 214 allow tcp from any to any 137 out
$IPF 215 allow udp from any to any 138 in
$IPF 216 allow tcp from any to any 138 in
$IPF 217 allow udp from any to any 138 out
$IPF 218 allow tcp from any to any 138 out
$IPF 223 allow udp from any to any 139 in
$IPF 224 allow udp from any to any 139 out
$IPF 225 allow tcp from any to any 139 in
$IPF 226 allow tcp from any to any 139 out
$IPF 227 allow tcp from any to any dst-port 445 in
$IPF 228 allow tcp from any to any dst-port 445 out
$IPF 229 allow udp from any to any dst-port 445 in
$IPF 230 allow udp from any to any dst-port 445 out
$IPF 231 allow tcp from any to any 993 in
$IPF 232 allow tcp from any to any 993 out
$IPF 233 allow tcp from any to any 995 in
$IPF 234 allow tcp from any to any 995 out
$IPF 235 allow all from any to any dst-port 1194 setup
$IPF 240 allow udp from any to me dst-port 1194
$IPF 245 allow tcp from any to any 2500 in
$IPF 250 allow tcp from any to any 2500 out
$IPF 255 allow tcp from any to any 9000 in
$IPF 255 allow tcp from any to any 9000 out
# deny and log everything
$IPF 500 deny log all from any to any
IPFW Show
Code:
00010 0 0 allow ip from any to any via lo0
00015 0 0 allow ip from any to any via tap0
00020 0 0 deny ip from any to 127.0.0.0/8
00030 0 0 deny ip from 127.0.0.0/8 to any
00035 0 0 allow ip from any to 10.8.0.0/24
00037 0 0 allow ip from 10.8.0.0/24 to any
00040 0 0 deny tcp from any to any frag
00050 0 0 check-state
00060 33 2756 allow tcp from any to any established
00070 0 0 allow ip from any to any out keep-state
00080 0 0 allow icmp from any to any
00110 0 0 allow tcp from any to any dst-port 21 in
00120 0 0 allow tcp from any to any dst-port 21 out
00130 0 0 allow tcp from any to any dst-port 22 in
00140 0 0 allow tcp from any to any dst-port 22 out
00150 0 0 allow tcp from any to any dst-port 25 in
00160 0 0 allow tcp from any to any dst-port 25 out
00170 0 0 allow udp from any to any dst-port 53 in
00175 0 0 allow tcp from any to any dst-port 53 in
00180 0 0 allow udp from any to any dst-port 53 out
00185 0 0 allow tcp from any to any dst-port 53 out
00200 0 0 allow tcp from any to any dst-port 80 in
00210 0 0 allow tcp from any to any dst-port 80 out
00211 60 4680 allow udp from any to any dst-port 137 in
00212 0 0 allow tcp from any to any dst-port 137 in
00213 0 0 allow udp from any to any dst-port 137 out
00214 0 0 allow tcp from any to any dst-port 137 out
00215 3 606 allow udp from any to any dst-port 138 in
00216 0 0 allow tcp from any to any dst-port 138 in
00217 0 0 allow udp from any to any dst-port 138 out
00218 0 0 allow tcp from any to any dst-port 138 out
00223 0 0 allow udp from any to any dst-port 139 in
00224 0 0 allow udp from any to any dst-port 139 out
00225 0 0 allow tcp from any to any dst-port 139 in
00226 0 0 allow tcp from any to any dst-port 139 out
00227 0 0 allow tcp from any to any dst-port 445 in
00228 0 0 allow tcp from any to any dst-port 445 out
00229 0 0 allow udp from any to any dst-port 445 in
00230 0 0 allow udp from any to any dst-port 445 out
00231 0 0 allow tcp from any to any dst-port 993 in
00232 0 0 allow tcp from any to any dst-port 993 out
00233 0 0 allow tcp from any to any dst-port 995 in
00234 0 0 allow tcp from any to any dst-port 995 out
00235 0 0 allow ip from any to any dst-port 1194 setup
00240 1 81 allow udp from any to me dst-port 1194
00245 0 0 allow tcp from any to any dst-port 2500 in
00250 0 0 allow tcp from any to any dst-port 2500 out
00255 0 0 allow tcp from any to any dst-port 9000 in
00255 0 0 allow tcp from any to any dst-port 9000 out
00500 34 5372 deny log ip from any to any
65535 1 78 deny ip from any to any