About Linux FAQ

Browse More FAQs:

APF Linux Firewall Open Port 22 From Specific / Selected IP Address Only

Posted by Vivek Gite [Last updated: June 9, 2008]

Q. I've CentOS Linux server configured with APF firewall. How do I open port 22 from specific IP address only? I've fix static ADSL IP address assgined and I'd like to open port 22 from my IP 202.5.1.3 only using APF firewall script. How do I configure firewall?

A. You need to edit two files:

a) /etc/apf/conf.apf - Main configuration file

b) /etc/apf/allow_hosts.rules - File to allow host wise configuration. You can set trust based rulesto grant access all or specific IP and port via the firewall.

APF Configuration

Open file /etc/apf/conf.apf, enter:
# vi /etc/apf/conf.apf
Find line that read as follows:
IG_TCP_CPORTS="20,21,22,25,53,80,110,143,443,3306"
ake sure you remove 22 from the list, so that it read as follows:
IG_TCP_CPORTS="20,21,25,53,80,110,143,443,3306"
Save and close the file. Now, open /etc/apf/allow_hosts.rules
# vi /etc/apf/allow_hosts.rules
Allow incomming SSH (TCP port # 22) traffic from your own ADSL connection only 202.5.1.3, append following text.
tcp:in:d=22:s=202.5.1.3
Save and close the file. Restart APF firewall:
# /etc/init.d/apf restart

E-mail this to a friend      Printable version

Related Other Helpful FAQs:

Leave a Reply

We encourage your comments, and suggestions. But please stay on topic, be polite, and avoid spam. Thank you very much for stopping by our site!

XHTML: You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Tags: , , , , , ,

Copyright © 2006-2008 nixCraft. All rights reserved - TOS/Disclaimer - Privacy policy - Sitemap - Powered by Open source software.