You are not logged in.

#1 2011-05-10 09:01:18

demian
Member
From: Frankfurt, Germany
Registered: 2009-05-06
Posts: 709

hosts.{allow,deny} not working?

Hey.

hosts.allow
ALL: 192.168.1.
ALL: 147.213.29.84

hosts.deny
ALL: ALL

Shouldn't this deny everyone outside of my LAN except 147.213.29.84 access to listening daemons on this machine? Because i'm pretty everyone has access to them, not just the given IP(s).

The PC in question resides within a LAN behind a NAT.

Am I missing something?

Thanks,
demian


no place like /home
github

Offline

#2 2011-05-10 09:15:14

fukawi2
Ex-Administratorino
From: .vic.au
Registered: 2007-09-28
Posts: 6,224
Website

Re: hosts.{allow,deny} not working?

demian wrote:

Am I missing something?

hosts.{allow,deny} ONLY applies to daemons that respect it. It is up to the daemon itself to check these files, it is not a replacement for a proper firewall (eg, iptables)

Offline

#3 2011-05-10 09:33:36

demian
Member
From: Frankfurt, Germany
Registered: 2009-05-06
Posts: 709

Re: hosts.{allow,deny} not working?

Thanks.
Just in case someone else is interested, the following is exactly what I'm looking for (allowing a dyndns host but noone else), done with iptables + ipopener:
http://dave.thehorners.com/tech-talk/pr … h/ipopener

Regards,
demian

Last edited by demian (2011-05-10 09:34:52)


no place like /home
github

Offline

Board footer

Powered by FluxBB