安裝好VPN(mpd),port1723沒有打開 - BBS
By Olga
at 2009-04-11T19:35
at 2009-04-11T19:35
Table of Contents
如題,最近在機器上面裝好了NAT及VPN,裝好VPN後我馬上就在家裡連機房的VPN server
但是卻出現了erro 800,我在機器上面輸入sockstat | grep 1723後,沒有東西跑出來,
請問這是什麼原因呢?
會不會是因為NAT那邊的防火牆規則沒有設定好?導致無法連線。
我把rc.firewall的規則貼出來,如果規則設定有錯,還請各位先進幫忙解惑,感激不盡。
myip="NAT server的IP"
outif="fxp0"
inif="fxp0"
/sbin/ipfw -f flush
/sbin/ipfw add 40009 allow tcp from me 1723 to any
/sbin/ipfw add 40010 allow tcp from any to me 1723
/sbin/ipfw add 40011 allow gre from me to any
/sbin/ipfw add 40012 allow gre from any to me
/sbin/ipfw add 40007 allow ip from any to 192.168.0.2 keep-state setup #我是設
定這個IP給vpn用
/sbin/ipfw add 40008 allow ip from 192.168.0.2 to any keep-state setup
/sbin/ipfw add 2000 allow udp from ${myip} to any keep-state
/sbin/ipfw add 2100 pass ip from ${myip} to any
--
但是卻出現了erro 800,我在機器上面輸入sockstat | grep 1723後,沒有東西跑出來,
請問這是什麼原因呢?
會不會是因為NAT那邊的防火牆規則沒有設定好?導致無法連線。
我把rc.firewall的規則貼出來,如果規則設定有錯,還請各位先進幫忙解惑,感激不盡。
myip="NAT server的IP"
outif="fxp0"
inif="fxp0"
/sbin/ipfw -f flush
/sbin/ipfw add 40009 allow tcp from me 1723 to any
/sbin/ipfw add 40010 allow tcp from any to me 1723
/sbin/ipfw add 40011 allow gre from me to any
/sbin/ipfw add 40012 allow gre from any to me
/sbin/ipfw add 40007 allow ip from any to 192.168.0.2 keep-state setup #我是設
定這個IP給vpn用
/sbin/ipfw add 40008 allow ip from 192.168.0.2 to any keep-state setup
/sbin/ipfw add 2000 allow udp from ${myip} to any keep-state
/sbin/ipfw add 2100 pass ip from ${myip} to any
--
Tags:
BBS
All Comments
Related Posts
使用ports方式安裝 Apache MySQL PHP FTP
By Leila
at 2009-04-11T12:33
at 2009-04-11T12:33
phpmyadmin 安裝發生錯誤
By Tom
at 2009-04-11T12:25
at 2009-04-11T12:25
使用ports方式安裝 Apache MySQL PHP FTP
By Skylar DavisLinda
at 2009-04-11T11:31
at 2009-04-11T11:31
phpmyadmin 安裝發生錯誤
By Lily
at 2009-04-11T11:21
at 2009-04-11T11:21
FreeBSD 上面跑 snmpwalk 的問題
By Adele
at 2009-04-11T11:16
at 2009-04-11T11:16