Hello and good morning
The first thing, sorry for my poor english (I am spanish).
Now the problem that have me crazy.
root@admorum:/> uname -a
HP-UX admorum B.11.11 U 9000/800 526726591 unlimited-user license
root@admorum:/> uptime
11:31am up 2 hrs, 2 users, load average: 0.94, 1.13, 1.48
top
-----
Memory: 1009696K (672316K) real, 1927116K (1538036K) virtual, 32588K free
----
Everything ok, the box run very well, the problem is when I install IPFilter.
With the following rules the firewall go ok.
------------------------------------
pass in quick on lan0 proto tcp from any to admorum/32 port = 22 keep state
block in quick on lan0 proto tcp from any to admorum/32 port = 23
pass in quick on lan0 proto tcp from 10.2.2.2/32 to admorum/32 port = 25 keep state
pass out quick on lan0 proto udp from any to any port = 53 keep state
...
-----------------------------------
The firewall block the ports and pass the rules perfect.
The problem is when I add the following rules at the end of file:
------------------------
block in on lan0 all
block out on lan0 all
------------------------
(Too do the same, if I add only one rule at the end of file, as much "block in ..."
as "block out ...")
Then, ipfilter block all the ports(traffic inbound and outbound), even all connections stablished.
I have to enter by lan console and desactive the firewall (ipf -Fa).
I look into logs and does not appear nothing interesting.
I think that the box have all the patches installed correctly (I have installed ipfilter
in other box and work fine ) and I am lose with this subject.
In conclusion, I cann't block the remaining ports as much inbound as outbound. :(
Any help will be appreciated.
Cheers and regards.