Bluehost.com Web Hosting $6.95

nmap shows port filtered, but iptables/ipchains not running

This is a discussion on nmap shows port filtered, but iptables/ipchains not running within the Linux Networking forums, part of the Linux Forums category; Greetings all, I ran an nmap of a machine that I am trying make an NFS server, and the results ...


Go Back   Usenet Forums > Linux Forums > Linux Networking

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 06-27-2004
Jeff Krimmel
 
Posts: n/a
Default nmap shows port filtered, but iptables/ipchains not running

Greetings all,

I ran an nmap of a machine that I am trying make an NFS server, and the
results showed that the machine's "priv-term-1", "sunrpc", "nfs" and a
bunch of "X11" ports are all filtered. The odd thing is that this
machine's ipchains service is turned off (and, regardless, all of the
chains are empty).

How else can ports be filtered in Linux, if the iptables/ipchains service
is not running?

Thanks,

Jeff

--
Add an underscore between 'd' and 's' and remove the first three
letters of the alphabet for email.
Reply With Quote
  #2 (permalink)  
Old 06-27-2004
Michael Heiming
 
Posts: n/a
Default Re: nmap shows port filtered, but iptables/ipchains not running

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
NotDashEscaped: You need GnuPG to verify this message

In comp.os.linux.networking Jeff Krimmel <madscientistabc03@hotmail.com> suggested:
> Greetings all,


> I ran an nmap of a machine that I am trying make an NFS server, and the
> results showed that the machine's "priv-term-1", "sunrpc", "nfs" and a
> bunch of "X11" ports are all filtered. The odd thing is that this


You could try using 'rpcinfo/showmount' (man rpcinfo), which is
suited for this task.

> machine's ipchains service is turned off (and, regardless, all of the
> chains are empty).


> How else can ports be filtered in Linux, if the iptables/ipchains service
> is not running?


Perhaps:

man 5 hosts_access

--
Michael Heiming (GPG-Key ID: 0xEDD27B94)
mail: echo zvpunry@urvzvat.qr | perl -pe 'y/a-z/n-za-m/'
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQFA3sgbAkPEju3Se5QRAl4HAKDKNVm+vwIdAZ0nOd+lsX bNnOlGRQCgiMwe
oLNW99tv8kDMjHr/7DsaRcM=
=epsn
-----END PGP SIGNATURE-----
Reply With Quote
  #3 (permalink)  
Old 06-27-2004
Jeff Krimmel
 
Posts: n/a
Default Re: nmap shows port filtered, but iptables/ipchains not running

On Sun, 27 Jun 2004 13:14:04 +0000, Michael Heiming wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> NotDashEscaped: You need GnuPG to verify this message
>
> In comp.os.linux.networking Jeff Krimmel <madscientistabc03@hotmail.com>
> suggested:
>> Greetings all,

>
>> I ran an nmap of a machine that I am trying make an NFS server, and the
>> results showed that the machine's "priv-term-1", "sunrpc", "nfs" and a
>> bunch of "X11" ports are all filtered. The odd thing is that this

>
> You could try using 'rpcinfo/showmount' (man rpcinfo), which is suited
> for this task.


Both of these show an RPC error, even though the portmapper is running on
both machines.

>> machine's ipchains service is turned off (and, regardless, all of the
>> chains are empty).

>
>> How else can ports be filtered in Linux, if the iptables/ipchains
>> service is not running?

>
> Perhaps:
>
> man 5 hosts_access


Thanks, and the /etc/hosts.allow and /etc/hosts.deny files are both set up
to allow the appropriate connections.

Any other ideas?

Jeff

--
Add an underscore between 'd' and 's' and remove the first three
letters of the alphabet for email.
Reply With Quote
  #4 (permalink)  
Old 06-27-2004
Michael Heiming
 
Posts: n/a
Default Re: nmap shows port filtered, but iptables/ipchains not running

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
NotDashEscaped: You need GnuPG to verify this message

In comp.os.linux.networking Jeff Krimmel <madscientistabc03@hotmail.com> suggested:
> On Sun, 27 Jun 2004 13:14:04 +0000, Michael Heiming wrote:
>> In comp.os.linux.networking Jeff Krimmel <madscientistabc03@hotmail.com>
>> suggested:

[..]
>> You could try using 'rpcinfo/showmount' (man rpcinfo), which is suited
>> for this task.


> Both of these show an RPC error, even though the portmapper is running on
> both machines.


Would you mind showing us the exact error message (cut&paste),
what does happen if you try 'rpcinfo -p localhost' on the nfs
server?

--
Michael Heiming (GPG-Key ID: 0xEDD27B94)
mail: echo zvpunry@urvzvat.qr | perl -pe 'y/a-z/n-za-m/'
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQFA3x/LAkPEju3Se5QRAjq0AJ9gHNjoV+xBh3k9J+TptANmRM5zHACdH X4S
abX3BJ0SlQXFVFY+O/GT14A=
=2Vke
-----END PGP SIGNATURE-----
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +1. The time now is 12:12 PM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0