Re: Hiding internal ip from the internet.

Dan Gordon <[email protected]> Wed, 27 Oct 2004 16:38:40 -0400
Newsgroups gmane.comp.security.firewalls.smoothwall.general
Organization TNLC
Message-ID <[email protected]>
On October 27, 2004 02:54 pm, paddy wrote:
>
> I would imagine they got this from your browser. I take it your LAN
> is 'off-net'. man tcpdump.

Yes it is.
>
> > There are two reported closed ports showing also 80 and
> > 113.
>
> 80 is http. 113 is ident.
>
> > Is this normal behavior ?
>
> here's a smoothwall2 at random,
> from the outside:
>
>   # nmap (a smoothie)
>
>   Starting nmap 3.50 ( http://www.insecure.org/nmap/ ) at 2004-10-27
> 19:39 BST Interesting ports on XXX
>
>   Nmap run completed -- 1 IP address (1 host up) scanned in 119.850
> seconds
>
> I've taken out the ports we forward.
> from the inside:
>
>   # nmap sw
>
>   Starting nmap 3.55 ( http://www.insecure.org/nmap/ ) at 2004-10-27
> 19:42 BST Interesting ports on sw
>   (The 1657 ports scanned but not shown below are in state: closed)
>
> 81 & 441 are http(s) for the admin interface
> 222 is sshd
> The 113 is an ident proxy or fake or something, I forget (yes, its
> normal). are you perhaps forwarding 80 ?  perhaps it is the
> web-proxy, I don't have that on right now.
>
> > Also can the smoothwall be monitored or configured locally ?
>
> locally ? try pointing a browser at http://xx.xx.xx.xx:81/
> where xx.xx.xx.xx is the internal ip address for the smoothwall.

I will rephrase that,  can i monitor or configure smoothwall from the 
smoothwall itself ?

Thanks paddy

Regards,
Dan Gordon
-- 
Wed Oct 27 16:34:42 EDT 2004
 16:34:42 up  3:36,  2 users,  load average: 0.01, 0.02, 0.00
I'll be comfortable on the couch.  Famous last words.
		-- Lenny Bruce
_______________________________________________
gpl mailing list
[email protected]
http://lists.smoothwall.org/mailman/listinfo/gpl

SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall