Re: open iptables for sendmail

Antonio Galea <[email protected]>
Newsgroups gmane.linux.redhat.release.enigma
Message-ID <Pine.LNX.4.44.0304291605220.14024-100000@beastieboy.uff.netwise.it>
On Tue, 29 Apr 2003, Martin Ramskogler wrote:

> :INPUT DROP [50957:5396723]
> :FORWARD DROP [0:0]
> :OUTPUT ACCEPT [336966:250894376]
> [0:0] -A INPUT -s 127.0.0.1 -p tcp -m tcp --dport 25 -j ACCEPT
> [0:0] -A INPUT -s 10.40.26.2 -p tcp -m tcp --dport 25 -j ACCEPT
> [0:0] -A INPUT -s 127.0.0.1 -p tcp -m tcp --sport 25 -j ACCEPT
> [0:0] -A INPUT -s 10.40.26.2 -p tcp -m tcp --sport 25 -j ACCEPT
> [0:0] -A OUTPUT -p tcp -m tcp --dport 25 -j ACCEPT
> [0:0] -A OUTPUT -p tcp -m tcp --sport 25 -j ACCEPT
> 
> 10.40.26.2 is the IP of the server. When I stop iptables, everything 
> works fine, the mails are sent. When I start iptables, the mails don't 
> come out of the box.
> 

It seems ok, but are these the only rules on your iptables packet filter?
Remember that the order of rules _IS_ important.  Hint: try logging what you
are DROPping in the INPUT chain... 

Ant9000

-- 
_____________________________________________________________________________
Dr. Antonio Galea       N e t   W i s e                 http://www.netwise.it
Sviluppo tecnico     Tecnologie per il Web    Tel 0461.421016 Fax 0461.426021
-----------------------------------------------------------------------------
I have the heart of a child; I keep it in a jar on my desk.
-----------------------------------------------------------------------------
--
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.