[Shorewall-users] Warning: ADDRESS (212.247.15.77) ignored in rule "ACCEPT net fw tcp ssh - 212.247.15.77"?

Jan Johansson jan.johansson@viking-telecom.com
Thu, 31 Jan 2002 13:55:03 +0100


>     ACCEPT    net:212.247.15.77    fw    tcp    ssh

Hmm, i might have *DOH*'d to early, doing that blocks 212.247.15.77 from
accessing SSH on the FW, the connerction just hangs.

Processing /etc/shorewall/tunnels...
Processing /etc/shorewall/rules...
   Rule "ACCEPT local fw tcp ssh" added.
   Rule "ACCEPT net fw tcp auth" added.
   Rule "ACCEPT fw net udp ntp" added.
   Rule "ACCEPT fw net tcp www,domain,ssh,ftp,https,smtp" added.
   Rule "ACCEPT fw net udp domain" added.
   Rule "ACCEPT net fw tcp www,ftp,https" added.
   Rule "ACCEPT net:212.247.15.77 fw tcp ftp" added.
   Rule "ACCEPT net:212.247.15.77 fw tcp ssh" added.
   Rule "ACCEPT net:212.181.140.140 fw tcp ssh" added.
   Rule "ACCEPT net:194.236.50.95 fw tcp ssh" added.
Adding rules for DHCP
Setting up ICMP Echo handling...
Processing /etc/shorewall/policy...
   Policy ACCEPT for fw to net.
   Policy DROP for net to fw.
   Policy ACCEPT for local to fw.
   Policy ACCEPT for local to net.
Masqueraded Subnets and Hosts:
Processing /etc/shorewall/tos...
   Rule "all all tcp - ssh 16" added.
   Rule "all all tcp ssh - 16" added.
   Rule "all all tcp - ftp 16" added.
   Rule "all all tcp ftp - 16" added.
   Rule "all all tcp ftp-data - 8" added.
   Rule "all all tcp - ftp-data 8" added.
Activating Rules...
Shorewall Restarted
support:~/shorewall#=20

But the client just hangs.