How-to authorize UDP connections for a range of ports and a single IP ?

Didier Spaier <[email protected]>
Newsgroups gmane.network.guarddog
Organization EPSM
Message-ID <[email protected]>
Hi everybody,

I have a notebook with Slackware Linux 10.2, vanilla kernels 2.6.15.4 & 
2.6.16-rc4 and an ADSL connection to Internet from ISP Free in Paris, France.
The "ADSL modem" I got from this ISP, called a "Freebox" is a triple play one: 
it delivers Internet + TV + telephone (VOIP)
I have no LAN.

My ISP offers a new service : TV streams delvered to the computer (useful for 
me as I have no TV). It uses an rstp server -- I don't know exactly what that 
is ;-) and the player I use (vlc or videolan) needs to get the streams that 
bi-diriectionnal (I think) traffic for UDP protocol be authorized between the 
"freebox" and my computer, for ports in the range 1024 - 65536.

In short : I need to authorize bi-directionnal traffic for all UDP ports in 
the range 1024-65535 between my box and IP 2I2.27.38.253

I was not able to set this up with Guarddog 2.4.0. I tried to make a dmz zone 
with the IP 2I2.27.38.253 but did'nt success. And I don't want to open all 
these ports to whole Internet.

How should I set up guarddog for this ?

PS1: please excuse my bad English and my silly questions (see PS2)
PS2: I know almost nothing about TCP/IP & networking
PS3: I saw in some fora people speaking abour ip forwarding to restrict the 
range of authorized ports but isn't that only for routers ? I don't know how 
to do that anyway
PS4 The feebox can be put in router mode - don't know if this can help either

Thanks in advance for the help.

Didier Spaier


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.