From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1MsiOy-0000wI-Dw for garchives@archives.gentoo.org; Tue, 29 Sep 2009 19:30:20 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 0129BE078C; Tue, 29 Sep 2009 19:30:20 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id B1711E078C for ; Tue, 29 Sep 2009 19:30:19 +0000 (UTC) Received: from stork.gentoo.org (stork.gentoo.org [64.127.104.133]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTP id 5F55F67863 for ; Tue, 29 Sep 2009 19:30:19 +0000 (UTC) Received: from scen by stork.gentoo.org with local (Exim 4.69) (envelope-from ) id 1MsiOw-0007qj-PW for gentoo-commits@lists.gentoo.org; Tue, 29 Sep 2009 19:30:18 +0000 From: "Davide Cendron (scen)" To: gentoo-commits@lists.gentoo.org Reply-To: gentoo-dev@lists.gentoo.org, scen@gentoo.org Subject: [gentoo-commits] gentoo commit in xml/htdocs/doc/it: home-router-howto.xml X-VCS-Repository: gentoo X-VCS-Files: home-router-howto.xml X-VCS-Directories: xml/htdocs/doc/it X-VCS-Committer: scen X-VCS-Committer-Name: Davide Cendron Content-Type: text/plain; charset=utf8 Message-Id: Sender: Davide Cendron Date: Tue, 29 Sep 2009 19:30:18 +0000 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: quoted-printable X-Archives-Salt: 8c8f9913-e2c4-47bf-aa5c-e74bbcaa45c3 X-Archives-Hash: ed01c2c8cd04c8c960a62b0d873d5d4c scen 09/09/29 19:30:18 Modified: home-router-howto.xml Log: Version 1.40, revision 1.63 of EN CVS Revision Changes Path 1.11 xml/htdocs/doc/it/home-router-howto.xml file : http://sources.gentoo.org/viewcvs.py/gentoo/xml/htdocs/doc/it/home= -router-howto.xml?rev=3D1.11&view=3Dmarkup plain: http://sources.gentoo.org/viewcvs.py/gentoo/xml/htdocs/doc/it/home= -router-howto.xml?rev=3D1.11&content-type=3Dtext/plain diff : http://sources.gentoo.org/viewcvs.py/gentoo/xml/htdocs/doc/it/home= -router-howto.xml?r1=3D1.10&r2=3D1.11 Index: home-router-howto.xml =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D RCS file: /var/cvsroot/gentoo/xml/htdocs/doc/it/home-router-howto.xml,v retrieving revision 1.10 retrieving revision 1.11 diff -u -r1.10 -r1.11 --- home-router-howto.xml 21 Sep 2008 15:14:02 -0000 1.10 +++ home-router-howto.xml 29 Sep 2009 19:30:18 -0000 1.11 @@ -1,6 +1,6 @@ - + =20 Configurare un Router domestico @@ -28,8 +28,8 @@ =20 -1.39 -2008-08-19 +1.40 +2009-09-18 =20 Introduzione @@ -476,15 +476,15 @@ Limitare i propri servizi affinch=C3=A9 funzionino solo dalla L= AN # iptables -I INPUT 1 -i ${LAN} -j ACCEPT # iptables -I INPUT 1 -i lo -j ACCEPT -# iptables -A INPUT -p UDP --dport bootps -i ! ${LAN} -j REJECT -# iptables -A INPUT -p UDP --dport domain -i ! ${LAN} -j REJECT +# iptables -A INPUT -p UDP --dport bootps ! -i ${LAN} -j REJECT +# iptables -A INPUT -p UDP --dport domain ! -i ${LAN} -j REJECT =20 (Opzionale) Abilitare l'accesso al server ssh dalla WAN # iptables -A INPUT -p TCP --dport ssh -i ${WAN} -j ACCEPT =20 Limitare i pacchetti TCP/UDP solo alle porte privilegiate (0-10= 23) -# iptables -A INPUT -p TCP -i ! ${LAN} -d 0/0 --dport 0:1023 -j DROP<= /i> -# iptables -A INPUT -p UDP -i ! ${LAN} -d 0/0 --dport 0:1023 -j DROP<= /i> +# iptables -A INPUT -p TCP ! -i ${LAN} -d 0/0 --dport 0:1023 -j DROP<= /i> +# iptables -A INPUT -p UDP ! -i ${LAN} -d 0/0 --dport 0:1023 -j DROP<= /i> =20 Infine abilitare il NAT # iptables -I FORWARD -i ${LAN} -d 192.168.0.0/255.255.0.0 -j DROP @@ -866,7 +866,7 @@ # emerge netqmail Assicurarsi che l'output di 'hostname' sia corretto # emerge --config netqmail -# iptables -I INPUT -p tcp --dport smtp -i ! ${LAN} -j REJECT +# iptables -I INPUT -p tcp --dport smtp ! -i ${LAN} -j REJECT # ln -s /var/qmail/supervise/qmail-send /service/qmail-send # ln -s /var/qmail/supervise/qmail-smtpd /service/qmail-smtpd # cd /etc/tcprules.d