Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Windows Rechner:
- smbclient -L 10.1.1.100 -U Testuser
- Enter Testuser's password:
- Connection to 10.1.1.100 failed (Error NT_STATUS_UNSUCCESSFUL)
- Linux Rechner:
- smbclient -L 10.1.1.5
- Enter Testuser's password:
- Domain=[WORKGROUP] OS=[Unix] Server=[Samba 3.5.6]
- Sharename Type Comment
- --------- ---- -------
- Storage Disk Datengrab
- IPC$ IPC IPC Service (Tux)
- Domain=[WORKGROUP] OS=[Unix] Server=[Samba 3.5.6]
- Server Comment
- --------- -------
- LINUX Tux
- WINDOWS
- Workgroup Master
- --------- -------
- WORKGROUP LINUX
- Netzwerk LAN: 10.1.1.0/24
- Netzwerk OpenVPN: 172.16.1.0/24
- iptables -nvL
- Chain INPUT (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 717 121K dynamic all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID,NEW
- 13733 3778K ovpn2fw all -- tun+ * 0.0.0.0/0 0.0.0.0/0
- 24502 11M loc2fw all -- eth0 * 0.0.0.0/0 0.0.0.0/0
- 56 2800 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 Drop all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:INPUT:DROP:' queue_threshold 1
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain FORWARD (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 4192 189K dynamic all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID,NEW
- 6763 367K ovpn2loc all -- tun+ eth0 0.0.0.0/0 0.0.0.0/0
- 3769 1659K loc2ovpn all -- eth0 tun+ 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 Drop all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:FORWARD:DROP:' queue_threshold 1
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain OUTPUT (policy DROP 0 packets, 0 bytes)
- pkts bytes target prot opt in out source destination
- 16074 9997K fw2ovpn all -- * tun+ 0.0.0.0/0 0.0.0.0/0
- 27611 14M fw2loc all -- * eth0 0.0.0.0/0 0.0.0.0/0
- 56 2800 ACCEPT all -- * lo 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 Drop all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:OUTPUT:DROP:' queue_threshold 1
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain Drop (4 references)
- pkts bytes target prot opt in out source destination
- 3984 178K all -- * * 0.0.0.0/0 0.0.0.0/0
- 7 308 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113 /* Auth */
- 3977 177K dropBcast all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 3 code 4 /* Needed ICMP types */
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 11 /* Needed ICMP types */
- 3977 177K dropInvalid all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,445 /* SMB */
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:137:139 /* SMB */
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:137 dpts:1024:65535 /* SMB */
- 4 176 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,139,445 /* SMB */
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1900 /* UPnP */
- 3964 174K dropNotSyn tcp -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:53 /* Late DNS Replies */
- Chain Reject (2 references)
- pkts bytes target prot opt in out source destination
- 22 1146 all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:113 /* Auth */
- 22 1146 dropBcast all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 3 code 4 /* Needed ICMP types */
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 11 /* Needed ICMP types */
- 22 1146 dropInvalid all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,445 /* SMB */
- 1 78 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpts:137:139 /* SMB */
- 0 0 reject udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:137 dpts:1024:65535 /* SMB */
- 0 0 reject tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 135,139,445 /* SMB */
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:1900 /* UPnP */
- 4 208 dropNotSyn tcp -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 DROP udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:53 /* Late DNS Replies */
- Chain dropBcast (2 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match dst-type BROADCAST
- 0 0 DROP all -- * * 0.0.0.0/0 224.0.0.0/4
- Chain dropInvalid (2 references)
- pkts bytes target prot opt in out source destination
- 17 860 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate INVALID
- Chain dropNotSyn (2 references)
- pkts bytes target prot opt in out source destination
- 4 208 DROP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:!0x17/0x02
- Chain dynamic (2 references)
- pkts bytes target prot opt in out source destination
- Chain fw2loc (1 references)
- pkts bytes target prot opt in out source destination
- 27435 14M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 18 1346 log1 udp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 53,123
- 158 10542 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:fw2loc:ACCEPT:' queue_threshold 1
- 158 10542 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain fw2ovpn (1 references)
- pkts bytes target prot opt in out source destination
- 16069 9996K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 5 254 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:fw2ovpn:ACCEPT:' queue_threshold 1
- 5 254 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain loc2fw (1 references)
- pkts bytes target prot opt in out source destination
- 23970 11M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8
- 12 688 log0 tcp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 22,25,80,110,443,1194,3128
- 0 0 log0 udp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 53,123
- 520 110K ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:loc2fw:ACCEPT:' queue_threshold 1
- 520 110K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain loc2ovpn (1 references)
- pkts bytes target prot opt in out source destination
- 3748 1658K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 0 0 ACCEPT tcp -- * * 0.0.0.0/0 0.0.0.0/0 multiport dports 137:139,445
- 0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp dpt:53
- 21 1068 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:loc2ovpn:REJECT:' queue_threshold 1
- 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain log0 (2 references)
- pkts bytes target prot opt in out source destination
- 12 688 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:loc2fw:ACCEPT:' queue_threshold 1
- 12 688 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain log1 (1 references)
- pkts bytes target prot opt in out source destination
- 18 1346 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:fw2loc:ACCEPT:' queue_threshold 1
- 18 1346 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain log2 (4 references)
- pkts bytes target prot opt in out source destination
- 8 440 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:ovpn2fw:ACCEPT:' queue_threshold 1
- 8 440 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain log3 (2 references)
- pkts bytes target prot opt in out source destination
- 5 300 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:ovpn2loc:ACCEPT:' queue_threshold 1
- 5 300 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain logdrop (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain logreject (0 references)
- pkts bytes target prot opt in out source destination
- 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain ovpn2fw (1 references)
- pkts bytes target prot opt in out source destination
- 13576 3770K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 2 120 ACCEPT icmp -- * * 172.16.1.6 0.0.0.0/0 icmp type 8
- 0 0 ACCEPT icmp -- * * 172.16.1.10 0.0.0.0/0 icmp type 8
- 0 0 ACCEPT icmp -- * * 172.16.1.26 0.0.0.0/0 icmp type 8
- 0 0 log2 udp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 53,123
- 2 100 log2 tcp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 21,22
- 145 7540 ACCEPT tcp -- * * 172.16.1.6 0.0.0.0/0 multiport dports 22,25,80,110,443,3128,6600,8080
- 1 60 ACCEPT tcp -- * * 172.16.1.10 0.0.0.0/0 multiport dports 22,80,443,3128,6600,8080
- 0 0 log2 tcp -- * * 172.16.1.26 0.0.0.0/0 [goto] multiport dports 22,80,443,3128,6600,8080
- 6 340 log2 tcp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 137:139,445
- 1 78 Reject all -- * * 0.0.0.0/0 0.0.0.0/0
- 0 0 ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:ovpn2fw:REJECT:' queue_threshold 1
- 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 [goto]
- Chain ovpn2loc (1 references)
- pkts bytes target prot opt in out source destination
- 2592 179K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 ctstate RELATED,ESTABLISHED
- 13 1208 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8
- 2 104 ACCEPT tcp -- * * 172.16.1.6 10.1.1.100 tcp dpt:3389
- 0 0 ACCEPT tcp -- * * 172.16.1.6 10.1.1.39 tcp dpt:3389
- 141 7380 ACCEPT tcp -- * * 172.16.1.6 0.0.0.0/0 multiport dports 21,22,80,137:139,443,445,3128
- 26 1336 ACCEPT tcp -- * * 172.16.1.10 0.0.0.0/0 multiport dports 21,22,80,137:139,443,445,3128
- 5 300 log3 tcp -- * * 172.16.1.26 0.0.0.0/0 [goto] multiport dports 21,22,80,137:139,443,445,3128,3389
- 0 0 log3 udp -- * * 0.0.0.0/0 0.0.0.0/0 [goto] multiport dports 53,123
- 3984 178K Drop all -- * * 0.0.0.0/0 0.0.0.0/0
- 3973 177K ULOG all -- * * 0.0.0.0/0 0.0.0.0/0 ULOG copy_range 0 nlgroup 1 prefix `Shorewall:ovpn2loc:DROP:' queue_threshold 1
- 3973 177K DROP all -- * * 0.0.0.0/0 0.0.0.0/0
- Chain reject (9 references)
- pkts bytes target prot opt in out source destination
- 0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 ADDRTYPE match src-type BROADCAST
- 0 0 DROP all -- * * 224.0.0.0/4 0.0.0.0/0
- 0 0 DROP 2 -- * * 0.0.0.0/0 0.0.0.0/0
- 7 308 REJECT tcp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with tcp-reset
- 1 78 REJECT udp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-port-unreachable
- 0 0 REJECT icmp -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-unreachable
- 0 0 REJECT all -- * * 0.0.0.0/0 0.0.0.0/0 reject-with icmp-host-prohibited
- Chain shorewall (0 references)
- pkts bytes target prot opt in out source destination
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement