I am pulling my hair here (not that I have much of that, but still )
I have a standard NS7RC2 server
1 RED on 192.168.10.100
1 GREEN on 192.168.11.100
- Account provider Samba AD on 192.168.11.111 with bridged interface
Following the manual it must be possible to open ports on either RED or GREEN interface following http://docs.nethserver.org/en/v7rc/third_party.html
I tried both scenarios setting RED and GREEN (Public and Local)
I want to open a set of ports so the command should be:
If the software needs some open ports on the firewall, create a new service named fw_.
For example, given the software mysoftware which needs ports 3344 and 5566 on LAN, use the following commands:
config set fw_mysoftware service status enabled TCPPorts 3344,5566 access green
after this, I should be able to connect trough telnet to the ports that are opened, however, I get a connection refused:
telnet 192.168.11.100 8632
telnet: Unable to connect to remote host: Connection refused
I did a tcp dump on the interface which gave me this:
[root@ns7 savapage]# tcpdump -i br0 port 8632 -vv
tcpdump: listening on br0, link-type EN10MB (Ethernet), capture size 65535 bytes
21:05:57.397268 IP (tos 0x10, ttl 64, id 33277, offset 0, flags [DF], proto TCP (6), length 60)
192.168.11.10.38794 > ns7.test.lan.8632: Flags [S], cksum 0xdfb1 (correct), seq 169479176, win 29200, options [mss 1460,sackOK,TS val 19238389 ecr 0,nop,wscale 7], length 0
21:05:57.397360 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF], proto TCP (6), length 40)
ns7.test.lan.8632 > 192.168.11.10.38794: Flags [R.], cksum 0x97d9 (incorrect -> 0x48ac), seq 0, ack 169479177, win 0, length 0
I could really use some help on this.
I had already some conversation with @filippo_carletti this afternoon, but that did not bring me further. It just looks like the signal event is not getting active. Is there another way of checking (or adding) the ports?