SpaceInvaders

FirewallD - dnamasq - dns service still blocked (dhcp works)

Jul 17th, 2016
152
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.04 KB | None | 0 0
  1. 192.168.1.106 client
  2. 1. DHCP works after firewall rules (shown below) established
  3. 2. DNS fails after firewall rules (shown below) established
  4.  
  5. On Firewall:
  6. ~]# firewall-cmd --zone=FedoraServer --add-rich-rule='rule family="ipv4" source address="192.168.1.106" reject
  7. ~]# firewall-cmd --zone=FedoraServer --add-rich-rule='rule family="ipv4" source address="192.168.1.106" service name="dhcp" accept'
  8. ~]# firewall-cmd --zone=FedoraServer --add-rich-rule='rule family="ipv4" source address="192.168.1.106" service name="dns" accept'
  9.  
  10. ~]# firewall-cmd --zone=FedoraServer --list-all
  11. FedoraServer (default, active)
  12. interfaces: enp0s25
  13. sources:
  14. services: cockpit dhcp dhcpv6-client dns ssh
  15. ports:
  16. protocols:
  17. masquerade: no
  18. forward-ports:
  19. icmp-blocks:
  20. rich rules:
  21. rule family="ipv4" source address="192.168.1.106" reject
  22. rule family="ipv4" source address="192.168.1.106" service name="dhcp" accept
  23. rule family="ipv4" source address="192.168.1.106" service name="dns" accept
  24.  
  25. Note: enp0s25 on firewall is the local LAN NIC
Advertisement
Add Comment
Please, Sign In to add comment