rcolli
(usa Debian)
Enviado em 13/07/2009 - 09:24h
[3] Enviado em 09/07/2009 - 10:57h:
LOGs
Amigo ..primeiramente obrigado pela ajuda ... é exatamente o que vc falou internet na eth1 e rede local na eth0.
Pois é quando eu tento acessar via putty(ssh) pela porta 2222 o mesmo da timeout. Não sei se ajuga mas abaixo segue os logs registrado no momento de uma tentativa de conexão. E o iptables -L -v. Valeu ..
LOG:
Jul 9 10:51:03 S1476 kernel: [175726.049507] LOG SSH:IN=eth1 OUT= MAC=00:14:d1:38:b6:d0:00:25:45:66:cd:94:08:00 SRC=189.107.17.35 DST=189.75.233.1 LEN=48 TOS=0x00 PREC=0x00 TTL=118 ID=27874 DF PROTO=TCP SPT=63918 DPT=2222 WINDOW=65535 RES=0x00 SYN URGP=0
Jul 9 10:51:03 S1476 kernel: [175726.049507] LOG FORWARD:IN=eth1 OUT=eth0 SRC=189.107.17.35 DST=10.1.48.6 LEN=48 TOS=0x00 PREC=0x00 TTL=117 ID=27874 DF PROTO=TCP SPT=63918 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
Jul 9 10:51:03 S1476 kernel: [175726.049507] LOG SSH-OUT:IN= OUT=eth0 SRC=189.107.17.35 DST=10.1.48.6 LEN=48 TOS=0x00 PREC=0x00 TTL=117 ID=27874 DF PROTO=TCP SPT=63918 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
Jul 9 10:51:06 S1476 kernel: [175729.036016] LOG FORWARD:IN=eth1 OUT=eth0 SRC=189.107.17.35 DST=10.1.48.6 LEN=48 TOS=0x00 PREC=0x00 TTL=117 ID=27901 DF PROTO=TCP SPT=63918 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
Jul 9 10:51:12 S1476 kernel: [175735.308656] LOG FORWARD:IN=eth1 OUT=eth0 SRC=189.107.17.35 DST=10.1.48.6 LEN=48 TOS=0x00 PREC=0x00 TTL=117 ID=27971 DF PROTO=TCP SPT=63918 DPT=22 WINDOW=65535 RES=0x00 SYN URGP=0
IPTABLES -L -v:
Chain INPUT (policy ACCEPT 9813 packets, 933K bytes)
pkts bytes target prot opt in out source destination
835 74827 ACCEPT all -- any any anywhere anywhere state RELATED,ESTABLISHED
0 0 LOG tcp -- any any anywhere anywhere tcp dpt:2222 LOG level warning prefix `LOG INPUT:'
1 52 LOG tcp -- any any anywhere anywhere tcp dpt:ssh LOG level warning prefix `LOG INPUT:'
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:5001
1 52 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ssh
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ftp
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:www
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:smtp
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:pop3
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:domain
0 0 ACCEPT udp -- any any anywhere anywhere udp dpt:domain
0 0 ACCEPT udp -- any any anywhere anywhere udp dpt:2082
0 0 ACCEPT udp -- any any anywhere anywhere udp dpt:gnunet
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:2222
0 0 ACCEPT tcp -- any any anywhere anywhere tcp spt:2222
0 0 ACCEPT tcp -- any any anywhere anywhere tcp spt:ssh
Chain FORWARD (policy ACCEPT 66076 packets, 3836K bytes)
pkts bytes target prot opt in out source destination
105K 39M ACCEPT all -- any any anywhere anywhere state RELATED,ESTABLISHED
0 0 LOG tcp -- any any anywhere anywhere tcp dpt:2222 LOG level warning prefix `LOG FORWARD:'
3 144 LOG tcp -- any any anywhere anywhere tcp dpt:ssh LOG level warning prefix `LOG FORWARD:'
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:2222
169 10083 ACCEPT tcp -- any any anywhere anywhere tcp dpt:https
1114 59268 ACCEPT tcp -- any any anywhere anywhere tcp dpt:www
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:3128
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:5800
5 256 ACCEPT tcp -- any any anywhere anywhere tcp dpt:5900
4 184 ACCEPT udp -- any any anywhere anywhere udp dpt:https
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ftp-data
3 144 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ssh
8 416 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ftp
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:2631
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:3128
0 0 ACCEPT tcp -- any any anywhere anywhere tcp spt:ssh
1 52 ACCEPT tcp -- any any anywhere anywhere tcp spt:2222
Chain OUTPUT (policy ACCEPT 23 packets, 1642 bytes)
pkts bytes target prot opt in out source destination
776 154K ACCEPT all -- any any anywhere anywhere state RELATED,ESTABLISHED
0 0 LOG tcp -- any any anywhere anywhere tcp dpt:2222 LOG level warning prefix `LOG OUTPUT:'
0 0 LOG tcp -- any any anywhere anywhere tcp dpt:ssh LOG level warning prefix `LOG OUTPUT:'
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:2222
0 0 ACCEPT tcp -- any any anywhere anywhere tcp dpt:ssh
0 0 ACCEPT tcp -- any any anywhere anywhere tcp spt:ssh
0 0 ACCEPT tcp -- any any anywhere anywhere tcp spt:2222