<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPFilter strange behaviour in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510252#M733040</link>
    <description>Thx for the answer Fred. I tried to do as you said and it worked :-)&lt;BR /&gt;&lt;BR /&gt;Rgrds,&lt;BR /&gt;---&lt;BR /&gt;JMR</description>
    <pubDate>Thu, 22 Oct 2009 14:58:27 GMT</pubDate>
    <dc:creator>jreypo</dc:creator>
    <dc:date>2009-10-22T14:58:27Z</dc:date>
    <item>
      <title>IPFilter strange behaviour</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510250#M733038</link>
      <description>Hi guys. I'm setting up an IPFilter version 15 in a 11.31 host with the following ruleset:&lt;BR /&gt;&lt;BR /&gt;---&lt;BR /&gt;# Block any incoming packet with IP options set&lt;BR /&gt;block in log quick all with ipopts&lt;BR /&gt;&lt;BR /&gt;# Allow any connection initiated from the host&lt;BR /&gt;pass out quick proto icmp all keep state&lt;BR /&gt;pass out quick proto tcp all keep state&lt;BR /&gt;pass out quick proto udp all keep state&lt;BR /&gt;&lt;BR /&gt;# Allow incoming connections from the data-protector cluster&lt;BR /&gt;pass in log quick on lan0 from dpphost01 to any&lt;BR /&gt;pass in log quick on lan0 from dpphost02 to any&lt;BR /&gt;&lt;BR /&gt;# Block any other connection&lt;BR /&gt;block in all&lt;BR /&gt;---&lt;BR /&gt;&lt;BR /&gt;But when I try to ssh from any other host than the DPP cluster the connection is stablished.&lt;BR /&gt;&lt;BR /&gt;I check the kernel modules and they are loaded. The ipfstat -io command shows everything OK:&lt;BR /&gt;&lt;BR /&gt;---&lt;BR /&gt;[root@artemisa] / # ipfstat -io&lt;BR /&gt;pass out quick proto icmp from any to any keep state&lt;BR /&gt;pass out quick proto tcp from any to any keep state&lt;BR /&gt;pass out quick proto udp from any to any keep state&lt;BR /&gt;block in log quick from any to any with ipopt&lt;BR /&gt;pass in log quick on lan0 from 10.31.4.75/32 to any&lt;BR /&gt;pass in log quick on lan0 from 10.31.4.76/32 to any&lt;BR /&gt;block in from any to any&lt;BR /&gt;[root@artemisa] / #&lt;BR /&gt;---&lt;BR /&gt;&lt;BR /&gt;I have little experience with IPFilter so any comment would be welcome.&lt;BR /&gt;&lt;BR /&gt;--&lt;BR /&gt;JMR</description>
      <pubDate>Thu, 08 Oct 2009 08:24:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510250#M733038</guid>
      <dc:creator>jreypo</dc:creator>
      <dc:date>2009-10-08T08:24:05Z</dc:date>
    </item>
    <item>
      <title>Re: IPFilter strange behaviour</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510251#M733039</link>
      <description>Try this for a pass in filter for ssh.&lt;BR /&gt;&lt;BR /&gt;#Allow SecureShell incoming connections&lt;BR /&gt;pass in quick on lan0 proto tcp from &amp;lt;&lt;IP-RANGE&gt;&amp;gt; to any port = 22 flags S keep state keep frags&lt;BR /&gt;&lt;BR /&gt;Works for me!&lt;BR /&gt;Fred&lt;/IP-RANGE&gt;</description>
      <pubDate>Thu, 22 Oct 2009 13:40:44 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510251#M733039</guid>
      <dc:creator>Fred K. Abell Jr._1</dc:creator>
      <dc:date>2009-10-22T13:40:44Z</dc:date>
    </item>
    <item>
      <title>Re: IPFilter strange behaviour</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510252#M733040</link>
      <description>Thx for the answer Fred. I tried to do as you said and it worked :-)&lt;BR /&gt;&lt;BR /&gt;Rgrds,&lt;BR /&gt;---&lt;BR /&gt;JMR</description>
      <pubDate>Thu, 22 Oct 2009 14:58:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/ipfilter-strange-behaviour/m-p/4510252#M733040</guid>
      <dc:creator>jreypo</dc:creator>
      <dc:date>2009-10-22T14:58:27Z</dc:date>
    </item>
  </channel>
</rss>

