Re: How-to authorize UDP connections for a range of ports and a single IP ?

Didier Spaier <[email protected]>
Newsgroups gmane.network.guarddog
Organization EPSM
Message-ID <[email protected]>
Le Mardi 21 Février 2006 00:05, ryan a écrit :
> On Monday 20 February 2006 3:56 pm, Didier Spaier wrote:
> > In short : I need to authorize bi-directionnal traffic for all UDP ports
> > in the range 1024-65535 between my box and IP 2I2.27.38.253
>
> I would try the following:
>
> #1 Get it working with no firewall at all. As root, "iptables -F" and make
> sure everything is set up right with VLC.
>
> #2 Fire up ethereal (in a pinch you can get away with netstat). Check the
> ports being used. The range you specified seems too large.
>
> #3 In guarddog, create a new zone for 212.27.38.253. Create a custom policy
> that is for TCP traffic 1-60000 and UDP traffic 1-60000. Confirm the rtsp
> stream works as expcted.
>
> #4 Narrow your port range per your results in #2.

Thanks for your answer :-)

I did what you proposed and it works.

I had to authorize access to port 554 for TCP too.

I still have to narrow the ports range though but as far only one iP is 
concerned, I'm not in a hurry for that.

Meanwhile I use now (g)mplayer instead of VLC.


 


-------------------------------------------------------
This SF.Net email is sponsored by xPML, a groundbreaking scripting language
that extends applications into web and mobile media. Attend the live webcast
and join the prime developer group breaking into this new coding territory!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid0944&bid$1720&dat1642
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.