Re: JedLUG-general Digest, Vol 22, Issue 5
"saad khan" <[email protected]> Mon, 12 Mar 2007 07:28:17 +0000
| Newsgroups | gmane.org.user-groups.linux.jedlug |
|---|---|
| Message-ID | <[email protected]> |
--===============1784240287== Content-Type: multipart/alternative; boundary="----=_Part_34261_22509322.1173684497489" ------=_Part_34261_22509322.1173684497489 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline setup transparent proxy server with squid to block zip,exe,video files. check out following link to setup transparent proxy server http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid to block files with squid http://www.cyberciti.biz/faq/squid-content-filter-block-files/ and use iptables to block msn servers. On 3/12/07, Ahmad alsane <[email protected]> wrote: > > ok done. i was making a stupid mistake as always. am trying to block MSN > messenger and .exe, .zip, vedio files and audio files downloads. > any idea ? note: i configured in-office proxy (thats why i was unable to > block any thing i was behind ISP proxy) > > On 3/10/07, [email protected] <[email protected]> > wrote: > > > > Send JedLUG-general mailing list submissions to > > [email protected] > > > > To subscribe or unsubscribe via the World Wide Web, visit > > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org > > or, via email, send a message with subject or body 'help' to > > [email protected] > > > > You can reach the person managing the list at > > [email protected] > > > > When replying, please edit your Subject line so it is more specific > > than "Re: Contents of JedLUG-general digest..." > > > > > > Today's Topics: > > > > 1. Firewall and routing (Ahmad alsane) > > 2. Re: Firewall and routing (saad khan) > > > > > > ---------------------------------------------------------------------- > > > > Message: 1 > > Date: Sat, 10 Mar 2007 12:17:07 +0300 > > From: "Ahmad alsane" <[email protected]> > > Subject: [Jedlug-general] Firewall and routing > > To: [email protected] > > Message-ID: > > <[email protected] > > > Content-Type: text/plain; charset="iso-8859-1" > > > > hi all, > > i have a LAN (192.168.1.0/255.255.255.0) and DSL modem (speed touch > > 585i). > > am trying to install Linux firewall with iptables. > > > > LAN ( 192.168.1.0) --> FW ( 192.168.1.3) --> DSL modem (192.168.1.254) > > ---> > > WAN > > > > i setl box gateway on LAN to 192.168.1.3 and the FW gateway to > > 192.168.1.254and i can get into WAN from that box. > > but what ever iptables rule i set, nothing blocked. > > > > please point me if i had somthing wrong with my scheme > > > > -- > > REGARDS. > > Ahmad S. Alsane > > OAK CPA > > KSA - Jeddah > > +966 55 701 3494 > > -------------- next part -------------- > > An HTML attachment was scrubbed... > > URL: > > /pipermail/jedlug-general_kerneled.org/attachments/20070310/4b1a069f/attachment- > > 0001.html > > > > ------------------------------ > > > > Message: 2 > > Date: Sat, 10 Mar 2007 10:42:06 +0000 > > From: "saad khan" <[email protected]> > > Subject: Re: [Jedlug-general] Firewall and routing > > To: "JedLUG's general mailing list" <[email protected]> > > Message-ID: > > < [email protected]> > > Content-Type: text/plain; charset="iso-8859-1" > > > > what do you want to block? > > can you send us iptables rules? (or script if you are using or writtten) > > > > > > > > On 3/10/07, Ahmad alsane <[email protected]> wrote: > > > > > > hi all, > > > i have a LAN (192.168.1.0/255.255.255.0 ) and DSL modem (speed touch > > 585i). > > > am trying to install Linux firewall with iptables. > > > > > > LAN ( 192.168.1.0) --> FW ( 192.168.1.3 ) --> DSL modem ( > > 192.168.1.254) > > > ---> WAN > > > > > > i setl box gateway on LAN to 192.168.1.3 and the FW gateway to > > > 192.168.1.254 and i can get into WAN from that box. > > > but what ever iptables rule i set, nothing blocked. > > > > > > please point me if i had somthing wrong with my scheme > > > > > > -- > > > REGARDS. > > > Ahmad S. Alsane > > > OAK CPA > > > KSA - Jeddah > > > +966 55 701 3494 > > > _______________________________________________ > > > JedLUG-general mailing list > > > [email protected] > > > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org > > > > > > > > -------------- next part -------------- > > An HTML attachment was scrubbed... > > URL: > > /pipermail/jedlug-general_kerneled.org/attachments/20070310/55da26aa/attachment- > > 0001.html > > > > ------------------------------ > > > > _______________________________________________ > > JedLUG-general mailing list > > [email protected] > > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org > > > > > > End of JedLUG-general Digest, Vol 22, Issue 5 > > ********************************************* > > > > > > -- > REGARDS. > Ahmad S. Alsane > OAK CPA > KSA - Jeddah > +966 55 701 3494 > > _______________________________________________ > JedLUG-general mailing list > [email protected] > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org > > ------=_Part_34261_22509322.1173684497489 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline setup transparent proxy server with squid to block zip,exe,video files.<br><br>check out following link to setup transparent proxy server<br><a href="http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid"> http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid</a><br><br>to block files with squid<br><a href="http://www.cyberciti.biz/faq/squid-content-filter-block-files/">http://www.cyberciti.biz/faq/squid-content-filter-block-files/ </a><br><br>and use iptables to block msn servers.<br><br><br><br><br><br><br><br><div><span class="gmail_quote">On 3/12/07, <b class="gmail_sendername">Ahmad alsane</b> <<a href="mailto:[email protected]">[email protected] </a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">ok done. i was making a stupid mistake as always. am trying to block MSN messenger and .exe, .zip, vedio files and audio files downloads. <br>any idea ? note: i configured in-office proxy (thats why i was unable to block any thing i was behind ISP proxy) <div><span class="q" id="q_11144f0572830c11_1"><br><br><div><span class="gmail_quote">On 3/10/07, <b class="gmail_sendername"><a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a></b> <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">Send JedLUG-general mailing list submissions to <br> <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br><br>To subscribe or unsubscribe via the World Wide Web, visit <br> <a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org</a><br>or, via email, send a message with subject or body 'help' to<br> <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected] </a><br><br>You can reach the person managing the list at<br> <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected] </a><br><br>When replying, please edit your Subject line so it is more specific <br>than "Re: Contents of JedLUG-general digest..."<br><br><br>Today's Topics:<br><br> 1. Firewall and routing (Ahmad alsane)<br> 2. Re: Firewall and routing (saad khan)<br><br><br>---------------------------------------------------------------------- <br><br>Message: 1<br>Date: Sat, 10 Mar 2007 12:17:07 +0300<br>From: "Ahmad alsane" <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected] </a>><br>Subject: [Jedlug-general] Firewall and routing<br> To: <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br>Message-ID:<br> <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected] </a>><br>Content-Type: text/plain; charset="iso-8859-1"<br><br>hi all,<br>i have a LAN (<a href="http://192.168.1.0/255.255.255.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0/255.255.255.0 </a>) and DSL modem (speed touch 585i).<br>am trying to install Linux firewall with iptables. <br><br>LAN ( <a href="http://192.168.1.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0</a>) --> FW ( <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> 192.168.1.3</a>) --> DSL modem (<a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.254</a>) ---><br>WAN<br><br>i setl box gateway on LAN to <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.3</a> and the FW gateway to<br>192.168.1.254and i can get into WAN from that box.<br>but what ever iptables rule i set, nothing blocked. <br><br>please point me if i had somthing wrong with my scheme <br><br>--<br>REGARDS.<br>Ahmad S. Alsane<br>OAK CPA<br>KSA - Jeddah<br>+966 55 701 3494<br>-------------- next part --------------<br>An HTML attachment was scrubbed...<br>URL: /pipermail/jedlug-general_kerneled.org/attachments/20070310/4b1a069f/attachment- 0001.html<br><br>------------------------------<br><br>Message: 2<br>Date: Sat, 10 Mar 2007 10:42:06 +0000<br>From: "saad khan" <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a>><br> Subject: Re: [Jedlug-general] Firewall and routing<br>To: "JedLUG's general mailing list" <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a>><br>Message-ID:<br> <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a>><br>Content-Type: text/plain; charset="iso-8859-1"<br><br>what do you want to block?<br>can you send us iptables rules? (or script if you are using or writtten) <br><br><br>On 3/10/07, Ahmad alsane <<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a>> wrote:<br>><br>> hi all,<br>> i have a LAN ( <a href="http://192.168.1.0/255.255.255.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0/255.255.255.0 </a>) and DSL modem (speed touch 585i).<br>> am trying to install Linux firewall with iptables.<br>><br>> LAN ( <a href="http://192.168.1.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> 192.168.1.0</a>) --> FW ( <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.3</a> ) --> DSL modem ( <a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.254</a>)<br>> ---> WAN<br>><br>> i setl box gateway on LAN to <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> 192.168.1.3</a> and the FW gateway to<br>> <a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> 192.168.1.254</a> and i can get into WAN from that box.<br>> but what ever iptables rule i set, nothing blocked.<br>><br>> please point me if i had somthing wrong with my scheme<br>><br>> --<br>> REGARDS. <br>> Ahmad S. Alsane<br>> OAK CPA<br>> KSA - Jeddah<br>> +966 55 701 3494<br>> _______________________________________________<br>> JedLUG-general mailing list<br>> <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> [email protected]</a><br>> <a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org </a><br>><br>><br>-------------- next part -------------- <br>An HTML attachment was scrubbed...<br>URL: /pipermail/jedlug-general_kerneled.org/attachments/20070310/55da26aa/attachment-0001.html<br><br>------------------------------<br><br>_______________________________________________ <br>JedLUG-general mailing list<br><a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br><a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)"> http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org </a><br><br><br>End of JedLUG-general Digest, Vol 22, Issue 5<br>*********************************************<br></blockquote></div><br><br clear="all"><br>-- <br>REGARDS.<br>Ahmad S. Alsane<br>OAK CPA<br>KSA - Jeddah<br> +966 55 701 3494 </span></div><br>_______________________________________________<br>JedLUG-general mailing list<br><a onclick="return top.js.OpenExtLink(window,event,this)" href="mailto:[email protected]">[email protected] </a><br><a onclick="return top.js.OpenExtLink(window,event,this)" href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank">http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org</a> <br><br></blockquote></div><br> ------=_Part_34261_22509322.1173684497489-- --===============1784240287== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ JedLUG-general mailing list [email protected] http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org --===============1784240287==--