voila le résultat sur le serveur :
[quote]# Generated by iptables-save v1.3.6 on Tue Feb 26 23:43:28 2008
*raw
REROUTING ACCEPT [2307:251155]
:OUTPUT ACCEPT [1456:156776]
COMMIT
Completed on Tue Feb 26 23:43:28 2008
Generated by iptables-save v1.3.6 on Tue Feb 26 23:43:28 2008
*mangle
REROUTING ACCEPT [2313:251467]
:INPUT ACCEPT [2313:251467]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [1462:157520]
OSTROUTING ACCEPT [1636:179602]
COMMIT
Completed on Tue Feb 26 23:43:28 2008
Generated by iptables-save v1.3.6 on Tue Feb 26 23:43:28 2008
*nat
REROUTING ACCEPT [373:55787]
OSTROUTING ACCEPT [487:43754]
:OUTPUT ACCEPT [487:43754]
COMMIT
Completed on Tue Feb 26 23:43:28 2008
Generated by iptables-save v1.3.6 on Tue Feb 26 23:43:28 2008
*filter
:INPUT DROP [8:3174]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [1478:159504]
-A INPUT -i lo -j ACCEPT
-A INPUT -p icmp -j DROP
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p tcp -m tcp --dport 20 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 21 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 631 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 5222 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 135 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 137 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 138 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 139 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 445 -j ACCEPT
-A INPUT -p udp -m udp --dport 445 -j ACCEPT
-A INPUT -p udp -m udp --dport 139 -j ACCEPT
-A INPUT -p udp -m udp --dport 138 -j ACCEPT
-A INPUT -p udp -m udp --dport 137 -j ACCEPT
-A INPUT -p udp -m udp --dport 135 -j ACCEPT
-A INPUT -p udp -m udp --dport 21029 -j ACCEPT
-A INPUT -p udp -m udp --dport 4001 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 21025 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 4001 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 4080 -j ACCEPT
COMMIT
Completed on Tue Feb 26 23:43:28 2008
[/quote]
sur le client :
[quote]# Generated by iptables-save v1.3.8 on Tue Feb 26 23:47:20 2008
*raw
REROUTING ACCEPT [90191:100740702]
:OUTPUT ACCEPT [62168:6709337]
COMMIT
Completed on Tue Feb 26 23:47:20 2008
Generated by iptables-save v1.3.8 on Tue Feb 26 23:47:20 2008
*mangle
REROUTING ACCEPT [90191:100740702]
:INPUT ACCEPT [90191:100740702]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [62168:6709337]
OSTROUTING ACCEPT [62715:6781915]
COMMIT
Completed on Tue Feb 26 23:47:20 2008
Generated by iptables-save v1.3.8 on Tue Feb 26 23:47:20 2008
*nat
REROUTING ACCEPT [700:102912]
OSTROUTING ACCEPT [4113:307074]
:OUTPUT ACCEPT [4113:307074]
COMMIT
Completed on Tue Feb 26 23:47:20 2008
Generated by iptables-save v1.3.8 on Tue Feb 26 23:47:20 2008
*filter
:INPUT DROP [249:32105]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [57613:6149029]
-A INPUT -i lo -j ACCEPT
-A INPUT -p icmp -j DROP
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -p tcp -m tcp --dport 20 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 21 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 22 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 80 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 631 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 5222 -j ACCEPT
-A INPUT -p udp -m udp --dport 31336 -j ACCEPT
-A INPUT -p udp -m udp --dport 135 -j ACCEPT
-A INPUT -p udp -m udp --dport 137 -j ACCEPT
-A INPUT -p udp -m udp --dport 138 -j ACCEPT
-A INPUT -p udp -m udp --dport 139 -j ACCEPT
-A INPUT -p udp -m udp --dport 445 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 135 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 137 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 138 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 139 -j ACCEPT
-A INPUT -p tcp -m tcp --dport 445 -j ACCEPT
COMMIT
Completed on Tue Feb 26 23:47:20 2008
[/quote]
Non je n’avais pas fait smbpasswd -e, maintenant c’est fait.
Autre question avec le tuto de ricardo je sais revenir à un firewall vierge avec la commande /etc/init.d/firewall clear mais dans ce cas là je dois retaper toutes les règles pour le réactiver.
Comment faire pour désactiver le firewall temporairement sans effacer les règles?
En tout cas merci de l’intérêt que tu portes à mon problème.