<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Which ports need to be open  through firewall?? in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735942#M88033</link>
    <description>In my firewall rule ,all output chain is set to allow from internal, I tried to log the ip of external host and printer , but nothing can be caputured or maybe I can't found the log file, is it in /var/log/ ?? By the way, I am weak in reading tcp/udp dump log file, anyone can help me examine which ports must be open come in and out firewall??</description>
    <pubDate>Mon, 03 Jun 2002 09:31:08 GMT</pubDate>
    <dc:creator>Eddy Chan_1</dc:creator>
    <dc:date>2002-06-03T09:31:08Z</dc:date>
    <item>
      <title>Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735938#M88029</link>
      <description>I have a external hosts which located in Data Centre protected by Checkpoint firewall, I am examine this external host can print to  my printer inside my company firewall (use iptables) , I open port 515 of Checkpoint can print to my HP jetdirect with real IP address ,but can't print when the printer is inside my firewall, I do with post-route and preroute rule and open port 515 as well, but still can't print, Do you know any echo port or others port need to be open when external host printing through firwall (iptables)??&lt;BR /&gt;&lt;BR /&gt;Thanks in advance&lt;BR /&gt;</description>
      <pubDate>Sun, 02 Jun 2002 17:40:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735938#M88029</guid>
      <dc:creator>Eddy Chan_1</dc:creator>
      <dc:date>2002-06-02T17:40:48Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735939#M88030</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;HP Jetdirect adapters use the following ports to communicate with hosts :&lt;BR /&gt;&lt;BR /&gt;   -&amp;gt; 515 when emulating LPD/LPR printing system&lt;BR /&gt;&lt;BR /&gt;   -&amp;gt; 9100 for native HP Network Printing (HPNP) protocol&lt;BR /&gt;&lt;BR /&gt;In some circumstances, you may need to open also 9101 and 9102 ports (for example if you have a multi-port Jetdirect box).&lt;BR /&gt;&lt;BR /&gt;Good luck.&lt;BR /&gt;&lt;BR /&gt;Kodjo&lt;BR /&gt;</description>
      <pubDate>Sun, 02 Jun 2002 18:43:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735939#M88030</guid>
      <dc:creator>Kodjo Agbenu</dc:creator>
      <dc:date>2002-06-02T18:43:26Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735940#M88031</link>
      <description>I opened port 515 and 9100 , but stil can't print, maybe my rules have some problem, &lt;BR /&gt;202.X.Y.Z is external host ip &lt;BR /&gt;printer ip is 192.168.3.198, pls give comment</description>
      <pubDate>Sun, 02 Jun 2002 20:27:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735940#M88031</guid>
      <dc:creator>Eddy Chan_1</dc:creator>
      <dc:date>2002-06-02T20:27:19Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735941#M88032</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;If I were you, I would accept also the traffic from 192.168.3.198:9100/515 to 202.X.Y.Z.&lt;BR /&gt;&lt;BR /&gt;I think that the JetDirect box tries to communicate with the host (for example : True End-Of-Job and Job Recovery features).&lt;BR /&gt;&lt;BR /&gt;If you still have problems, try open all the traffic to and from 515/9100 ports, and log the traffic using iptables. After that, you can have a good idea of what packets go to where.&lt;BR /&gt;&lt;BR /&gt;Good luck.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Mon, 03 Jun 2002 08:58:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735941#M88032</guid>
      <dc:creator>Kodjo Agbenu</dc:creator>
      <dc:date>2002-06-03T08:58:31Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735942#M88033</link>
      <description>In my firewall rule ,all output chain is set to allow from internal, I tried to log the ip of external host and printer , but nothing can be caputured or maybe I can't found the log file, is it in /var/log/ ?? By the way, I am weak in reading tcp/udp dump log file, anyone can help me examine which ports must be open come in and out firewall??</description>
      <pubDate>Mon, 03 Jun 2002 09:31:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735942#M88033</guid>
      <dc:creator>Eddy Chan_1</dc:creator>
      <dc:date>2002-06-03T09:31:08Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735943#M88034</link>
      <description>Can you telnet to the HP printer port:&lt;BR /&gt;&lt;BR /&gt;telnet ip_addy_of_printer 9100&lt;BR /&gt;&lt;BR /&gt;echo port = 7&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Mon, 03 Jun 2002 14:05:44 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735943#M88034</guid>
      <dc:creator>D. Jackson_1</dc:creator>
      <dc:date>2002-06-03T14:05:44Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735944#M88035</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;To log packets with iptables, insert the following rules at the beginning of your script, just after the line "iptables -P FORWARD DROP" :&lt;BR /&gt;&lt;BR /&gt;iptables -N log_packets&lt;BR /&gt;iptables -A log_packets -j LOG --log-prefix FIREWALL&lt;BR /&gt;&lt;BR /&gt;iptables -A INPUT -s 202.X.Y.Z/32 --dport 515 -j log_packets&lt;BR /&gt;&lt;BR /&gt;iptables -A INPUT -s 202.X.Y.Z/32 --dport 9100 -j log_packets&lt;BR /&gt;&lt;BR /&gt;iptables -A INPUT -s 192.168.3.198/32 --sport 515 -j log_packets&lt;BR /&gt;&lt;BR /&gt;iptables -A INPUT -s 192.168.3.198/32 --sport 9100 -j log_packets&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Have a look in /var/log/messages, and try to analyse what happens.&lt;BR /&gt;&lt;BR /&gt;Good luck.&lt;BR /&gt;&lt;BR /&gt;Kodjo&lt;BR /&gt;</description>
      <pubDate>Mon, 03 Jun 2002 15:04:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735944#M88035</guid>
      <dc:creator>Kodjo Agbenu</dc:creator>
      <dc:date>2002-06-03T15:04:20Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735945#M88036</link>
      <description>I can telnet from external host to my printer thr' firewall , so I think the pre-routing nad post-routing rules for NAT is no problem, but still can't print thr' firewall, I need to log the messsage to see what happen but I am weekless in reading TCP/UDP packet, I need more help...Thanks</description>
      <pubDate>Mon, 03 Jun 2002 17:36:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735945#M88036</guid>
      <dc:creator>Eddy Chan_1</dc:creator>
      <dc:date>2002-06-03T17:36:56Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735946#M88037</link>
      <description>Sorry for previous wrong post,&lt;BR /&gt;I can telnet IP only to my printer through firewall, &lt;BR /&gt;but cannot telnet ip with port 9100 to my printer.&lt;BR /&gt;Here is my firewall with NAT &lt;BR /&gt;"External_Host_Real_ip" is the real ip of external host .&lt;BR /&gt;"Printer_Real_ip" is my assign to my JetDirect 's real ip.&lt;BR /&gt;After NAT of printer's ip is "Virtual_Printer_ip".&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 04 Jun 2002 08:24:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735946#M88037</guid>
      <dc:creator>Eddy Chan_1</dc:creator>
      <dc:date>2002-06-04T08:24:20Z</dc:date>
    </item>
    <item>
      <title>Re: Which ports need to be open  through firewall??</title>
      <link>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735947#M88038</link>
      <description>I have the same problem.&lt;BR /&gt;Destination port is 9100. This works as a charm if I telnet from the router-box, but not from the outside.&lt;BR /&gt;I am forwarding port 9100 9101 and 9102 into the printer.&lt;BR /&gt;&lt;BR /&gt;I am using "Arno's iptables" script on the routerbox to administer the iptables rules. &lt;BR /&gt;&lt;BR /&gt;I am also "weak" with iptables, therefore I use this script to ease the administration.&lt;BR /&gt;&lt;BR /&gt;Any input on this issue would be greatly appreciated. The branch office I am setting this up for needs this to work for a new economy system that needs print-access.&lt;BR /&gt;</description>
      <pubDate>Sun, 21 Mar 2004 22:42:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/which-ports-need-to-be-open-through-firewall/m-p/2735947#M88038</guid>
      <dc:creator>shpshftr</dc:creator>
      <dc:date>2004-03-21T22:42:50Z</dc:date>
    </item>
  </channel>
</rss>

