Logo Hardware.com.br
diogosilva
diogosilva Membro Junior Registrado
80 Mensagens 0 Curtidas

Proxy Manual

#1 Por diogosilva 02/02/2015 - 17:31
Boa tarde Pessoal,
Estou utilizando o proxy transparente em minha rede , mas por motivos de segurança , vou ter que utilizar o proxy manual.
Porém que quando configuro o proxy manual no zentyal, as estações que não estão com o proxy configurado em suas maquinas , continuam a navegar normalmente, o que não deveria acontecer.
Alguém sabe me dizer porque isso acontece ?
Agradeço a ajuda.
diogosilva
diogosilva Membro Junior Registrado
80 Mensagens 0 Curtidas
#3 Por diogosilva
04/02/2015 - 09:43
Segue ..
fdrop all -- anywhere anywhere state INVALID
faccept all -- anywhere anywhere state RELATED,ESTA BLISHED
fnospoof all -- anywhere anywhere
fredirects all -- anywhere anywhere
fmodules all -- anywhere anywhere
ffwdrules all -- anywhere anywhere
fnoexternal all -- anywhere anywhere
fdns all -- anywhere anywhere
fglobal all -- anywhere anywhere
faccept icmp !f anywhere anywhere icmp echo-request state NEW
faccept icmp !f anywhere anywhere icmp echo-reply st ate NEW
faccept icmp !f anywhere anywhere icmp destination-u nreachable state NEW
faccept icmp !f anywhere anywhere icmp source-quench state NEW
faccept icmp !f anywhere anywhere icmp time-exceeded state NEW
faccept icmp !f anywhere anywhere icmp parameter-pro blem state NEW
fdrop all -- anywhere anywhere

Chain OUTPUT (policy DROP)
target prot opt source destination
ACCEPT all -- anywhere anywhere
preoutput all -- anywhere anywhere
odrop all -- anywhere anywhere state INVALID
oaccept all -- anywhere anywhere state RELATED,ESTA BLISHED
ointernal all -- anywhere anywhere
omodules all -- anywhere anywhere
oglobal all -- anywhere anywhere
oaccept icmp !f anywhere anywhere icmp echo-request state NEW
oaccept icmp !f anywhere anywhere icmp echo-reply st ate NEW
oaccept icmp !f anywhere anywhere icmp destination-u nreachable state NEW
oaccept icmp !f anywhere anywhere icmp source-quench state NEW
oaccept icmp !f anywhere anywhere icmp time-exceeded state NEW
oaccept icmp !f anywhere anywhere icmp parameter-pro blem state NEW
odrop all -- anywhere anywhere

Chain drop (5 references)
target prot opt source destination
DROP all -- anywhere anywhere

Chain faccept (9 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere

Chain fdns (1 references)
target prot opt source destination

Chain fdrop (6 references)
target prot opt source destination
drop all -- anywhere anywhere

Chain ffwdrules (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere

Chain fglobal (1 references)
target prot opt source destination
faccept all -- anywhere anywhere

Chain fmodules (1 references)
target prot opt source destination

Chain fnoexternal (1 references)
target prot opt source destination
fdrop all -- anywhere anywhere state NEW

Chain fnospoof (1 references)
target prot opt source destination
fnospoofmodules all -- anywhere anywhere
fdrop all -- 10.91.0.0/24 anywhere
fdrop all -- 192.168.1.0/24 anywhere

Chain fnospoofmodules (1 references)
target prot opt source destination

Chain fredirects (1 references)
target prot opt source destination

Chain ftoexternalonly (0 references)
target prot opt source destination
faccept all -- anywhere anywhere
fdrop all -- anywhere anywhere

Chain iaccept (30 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere

Chain idrop (5 references)
target prot opt source destination
drop all -- anywhere anywhere

Chain iexternal (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere
drop tcp -- anywhere anywhere tcp dpt:xmpp-clien t state NEW
drop tcp -- anywhere anywhere tcp dpt:5223 state NEW

Chain iexternalmodules (1 references)
target prot opt source destination
RETURN all -- anywhere anywhere

Chain iglobal (1 references)
target prot opt source destination
iaccept tcp -- anywhere anywhere tcp dpt:xmpp-clien t state NEW
iaccept tcp -- anywhere anywhere tcp dpt:5223 state NEW
iaccept udp -- anywhere anywhere udp dpt:kerberos s tate NEW
iaccept tcp -- anywhere anywhere tcp dpt:kerberos s tate NEW
iaccept tcp -- anywhere anywhere tcp dpt:loc-srv st ate NEW
iaccept udp -- anywhere anywhere udp dpt:netbios-ns state NEW
iaccept udp -- anywhere anywhere udp dpt:netbios-dg m state NEW
iaccept tcp -- anywhere anywhere tcp dpt:netbios-ss n state NEW
iaccept udp -- anywhere anywhere udp dpt:ldap state NEW
iaccept tcp -- anywhere anywhere tcp dpt:ldap state NEW
iaccept tcp -- anywhere anywhere tcp dpt:microsoft- ds state NEW
iaccept udp -- anywhere anywhere udp dpt:kpasswd st ate NEW
iaccept tcp -- anywhere anywhere tcp dpt:kpasswd st ate NEW
iaccept tcp -- anywhere anywhere tcp dpt:ldaps stat e NEW
iaccept tcp -- anywhere anywhere tcp dpt:1024 state NEW
iaccept tcp -- anywhere anywhere tcp dpt:3268 state NEW
iaccept tcp -- anywhere anywhere tcp dpt:3269 state NEW
iaccept udp -- anywhere anywhere udp dpt:ntp state NEW
iaccept udp -- anywhere anywhere udp dpt:domain sta te NEW
iaccept tcp -- anywhere anywhere tcp dpt:domain sta te NEW
iaccept tcp -- anywhere anywhere tcp dpt:ssh state NEW
iaccept tcp -- anywhere anywhere tcp dpt:8180 state NEW

Chain imodules (1 references)
target prot opt source destination
iaccept tcp -- anywhere anywhere state NEW tcp dpt: 3128
DROP tcp -- anywhere anywhere state NEW tcp dpt: 3129
DROP tcp -- anywhere anywhere state NEW tcp dpt: icpv2

Chain inoexternal (1 references)
target prot opt source destination
idrop all -- anywhere anywhere state NEW

Chain inointernal (0 references)
target prot opt source destination

Chain inospoof (1 references)
target prot opt source destination
inospoofmodules all -- anywhere anywhere
idrop all -- 10.91.0.0/24 anywhere
idrop all -- 192.168.1.0/24 anywhere

Chain inospoofmodules (1 references)
target prot opt source destination

Chain log (0 references)
target prot opt source destination
RETURN all -- anywhere anywhere

Chain oaccept (12 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere

Chain odrop (2 references)
target prot opt source destination
drop all -- anywhere anywhere

Chain oglobal (1 references)
target prot opt source destination
oaccept all -- anywhere anywhere state NEW

Chain ointernal (1 references)
target prot opt source destination

Chain omodules (1 references)
target prot opt source destination
oaccept udp -- anywhere anywhere udp dpt:domain
oaccept tcp -- anywhere anywhere tcp dpt:domain
oaccept tcp -- anywhere anywhere state NEW tcp dpt: http
oaccept tcp -- anywhere anywhere state NEW tcp dpt: https

Chain preforward (1 references)
target prot opt source destination

Chain preinput (1 references)
target prot opt source destination

Chain preoutput (1 references)
target prot opt source destination
Diogo Bicalho
Analista de Infraestrutura e Suporte
© 1999-2024 Hardware.com.br. Todos os direitos reservados.
Imagem do Modal