configuring suse firewall to block outgoing SMB?

From: David Brower (sonicnews_at_browernet.org)
Date: 04/17/04

  • Next message: Duane Arnold: "Re: microsoft-ds - what & why?"
    Date: Sat, 17 Apr 2004 03:17:47 GMT
    
    

    Sometimes I VPN to work, and my windows machines are hardwired to talk to
    the WINS servers at work. When not connected via VPN, they still
    try to send updates to the company WINS server, and these are leaking out
    my SuSEFirewall2 machine.

    I'd like to configure the firewall to block all outgoing packets on the public
    interface directed to ports 135:139, without blocking traffic from the
    firewall to the internal interface -- it has its own SMB exports and
    needs to publish its own data locally.

    Any ideas how to do this? I am an iptables n00b.

    thanks,

    -dB


  • Next message: Duane Arnold: "Re: microsoft-ds - what & why?"

    Relevant Pages

    • Re: VPN through NetBSD FW.
      ... >networks of Windows machines. ... I now have the need to pipe a VPN ... >fails since the firewall is not configured yet. ... >allow the Windows servers to be the VPN server. ...
      (comp.unix.bsd.netbsd.misc)
    • Re: firewall
      ... I need some opinion on which firewall to obtain as I am setting up ... a new VPN and network router connecting 8 servers in the office on ...
      (FreeBSD-Security)
    • Re: vpn vs ssh
      ... > I have a firewall with servers behind it. ... > access thru a firewall NAT to the servers. ... The programmer's argument is if I allow a VPN connection, ... > don't I allow an ssh connection. ...
      (comp.security.firewalls)
    • Re: VPN through NetBSD FW.
      ... I now have the need to pipe a VPN ... >>fails since the firewall is not configured yet. ... >>signals through and all I find are answeres for setting up NetBSD ... > And if you need to support mobile Windows machines calling in there ...
      (comp.unix.bsd.netbsd.misc)
    • Re: VPN
      ... > If i have two sites, one in US and one in UK and i want to setup a VPN to connect them together. ... I got a SonicWall firewall gateway at both sites with a static IP ... Both servers are using private IP address, ... Hi Roy ...
      (microsoft.public.windowsxp.work_remotely)