<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: Linux Iptables open Bittorrent tcp ports 6881 to 6889</title> <atom:link href="http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html/feed" rel="self" type="application/rss+xml" /><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html</link> <description>This is a Linux sys admin journal by Vivek about sys admin work, Linux tips &#38; tricks, hacks, news and more.</description> <lastBuildDate>Fri, 10 Feb 2012 20:37:43 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <item><title>By: SIFE</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-156455</link> <dc:creator>SIFE</dc:creator> <pubDate>Thu, 10 Jun 2010 18:03:16 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-156455</guid> <description>hi, this info very good and give me some idea to apply in other services in future .
what if i want to block seeding only or leeching only ,i am using OpenBSD PF .</description> <content:encoded><![CDATA[<p>hi, this info very good and give me some idea to apply in other services in future .<br
/> what if i want to block seeding only or leeching only ,i am using OpenBSD PF .</p> ]]></content:encoded> </item> <item><title>By: i3keba</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-155832</link> <dc:creator>i3keba</dc:creator> <pubDate>Thu, 06 May 2010 08:24:45 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-155832</guid> <description>Question: how will behave iptables if I will forward one port range to different port range?
Example:
iptables -t nat -A PREROUTING -p tcp --dport 6001:6999 -j DNAT --to-destination 192.168.0.30:7001-7999
As I know 2.4 kernel was mapping port to port but 2.6.11 and up seems always mapping 6001:6999 to first port (7001) of 7001-7999 range.
Any ideas</description> <content:encoded><![CDATA[<p>Question: how will behave iptables if I will forward one port range to different port range?<br
/> Example:<br
/> iptables -t nat -A PREROUTING -p tcp &#8211;dport 6001:6999 -j DNAT &#8211;to-destination 192.168.0.30:7001-7999<br
/> As I know 2.4 kernel was mapping port to port but 2.6.11 and up seems always mapping 6001:6999 to first port (7001) of 7001-7999 range.</p><p>Any ideas</p> ]]></content:encoded> </item> <item><title>By: stewa</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-150504</link> <dc:creator>stewa</dc:creator> <pubDate>Thu, 03 Sep 2009 16:52:32 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-150504</guid> <description>Thank you! Now Torrent works great!</description> <content:encoded><![CDATA[<p>Thank you! Now Torrent works great!</p> ]]></content:encoded> </item> <item><title>By: voxeljorz</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-148128</link> <dc:creator>voxeljorz</dc:creator> <pubDate>Wed, 15 Apr 2009 05:42:33 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-148128</guid> <description>i use free ports for torrent, by the way using windows OS with Kerio Firewall</description> <content:encoded><![CDATA[<p>i use free ports for torrent, by the way using windows OS with Kerio Firewall</p> ]]></content:encoded> </item> <item><title>By: chandan kumar</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-147411</link> <dc:creator>chandan kumar</dc:creator> <pubDate>Tue, 24 Feb 2009 14:50:11 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-147411</guid> <description>i know about protocol-ports.</description> <content:encoded><![CDATA[<p>i know about protocol-ports.</p> ]]></content:encoded> </item> <item><title>By: Hellimod</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-144865</link> <dc:creator>Hellimod</dc:creator> <pubDate>Sat, 06 Sep 2008 12:47:54 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-144865</guid> <description>Everything said in this article is true except for the port assignment. ports 6881 to 6889 are blacklisted by both ISP&#039;s and trackers now adays. Advising people use these ports is completely incorrect. Better to just say to people to pick any ports in the 50000+ range. Not only are those ports blacklisted. Using them will get you banned from many trackets. Yep complete and utter outright ban on those ports they are not to be used EVER.</description> <content:encoded><![CDATA[<p>Everything said in this article is true except for the port assignment. ports 6881 to 6889 are blacklisted by both ISP&#8217;s and trackers now adays. Advising people use these ports is completely incorrect. Better to just say to people to pick any ports in the 50000+ range. Not only are those ports blacklisted. Using them will get you banned from many trackets. Yep complete and utter outright ban on those ports they are not to be used EVER.</p> ]]></content:encoded> </item> <item><title>By: Gini</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-144249</link> <dc:creator>Gini</dc:creator> <pubDate>Wed, 02 Jul 2008 17:01:53 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-144249</guid> <description>Hi
Is there a way that we can force a particular application to use a particular interface say wlan0 or eth0 ?</description> <content:encoded><![CDATA[<p>Hi<br
/> Is there a way that we can force a particular application to use a particular interface say wlan0 or eth0 ?</p> ]]></content:encoded> </item> <item><title>By: Sneezy Melon</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-143186</link> <dc:creator>Sneezy Melon</dc:creator> <pubDate>Sat, 15 Mar 2008 16:58:27 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-143186</guid> <description>nice post! Thanks for sharing!</description> <content:encoded><![CDATA[<p>nice post! Thanks for sharing!</p> ]]></content:encoded> </item> <item><title>By: rich</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142396</link> <dc:creator>rich</dc:creator> <pubDate>Tue, 08 Jan 2008 16:42:30 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142396</guid> <description>It took me a while to find this info... I had port forwarded 6881-6889 and didnt gain anything so I was glad to see that there&#039;s one more step to getting it working correctly.  I&#039;ll try it out tonight:
iptables -A INPUT -p tcp --destination-port 6881:6999 -j ACCEPT
iptables -A OUTPUT -p tcp --source-port 6881:6999 -j ACCEPT</description> <content:encoded><![CDATA[<p>It took me a while to find this info&#8230; I had port forwarded 6881-6889 and didnt gain anything so I was glad to see that there&#8217;s one more step to getting it working correctly.  I&#8217;ll try it out tonight:</p><p>iptables -A INPUT -p tcp &#8211;destination-port 6881:6999 -j ACCEPT<br
/> iptables -A OUTPUT -p tcp &#8211;source-port 6881:6999 -j ACCEPT</p> ]]></content:encoded> </item> <item><title>By: vivek</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142081</link> <dc:creator>vivek</dc:creator> <pubDate>Thu, 06 Dec 2007 16:37:01 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142081</guid> <description>It should be as follows, (note double dash --)
&lt;pre&gt;iptables -t nat -A PREROUTING -p tcp --dport 6881:6889 -j DNAT --to-destination 192.168.0.30&lt;/pre&gt;</description> <content:encoded><![CDATA[<p>It should be as follows, (note double dash &#8211;)</p><pre>iptables -t nat -A PREROUTING -p tcp --dport 6881:6889 -j DNAT --to-destination 192.168.0.30</pre>]]></content:encoded> </item> <item><title>By: Albert</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142080</link> <dc:creator>Albert</dc:creator> <pubDate>Thu, 06 Dec 2007 15:49:24 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-142080</guid> <description>I&#039;m getting:
iptables -t nat -A PREROUTING -p tcp –d 6881:6889
-j DNAT –to-destination 192.168.0.30
-- Bad argument &#039;192.168.0.30&#039;
I looked in the help but no -to-destination argument found...
What can I do? thanks in advance.</description> <content:encoded><![CDATA[<p>I&#8217;m getting:</p><p>iptables -t nat -A PREROUTING -p tcp –d 6881:6889<br
/> -j DNAT –to-destination 192.168.0.30</p><p>&#8211; Bad argument &#8217;192.168.0.30&#8242;</p><p>I looked in the help but no -to-destination argument found&#8230;</p><p>What can I do? thanks in advance.</p> ]]></content:encoded> </item> <item><title>By: Avesh</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-141143</link> <dc:creator>Avesh</dc:creator> <pubDate>Wed, 19 Sep 2007 08:39:13 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-141143</guid> <description>Hi, my iptables is not working in redhat linux.
It gives me the error as iptables-restore not matched. whereas this file is /sbin.
whether i need to run the command of service iptables-save. also when i put -p in my iptables command it gives me the error. so what shud I do?</description> <content:encoded><![CDATA[<p>Hi, my iptables is not working in redhat linux.<br
/> It gives me the error as iptables-restore not matched. whereas this file is /sbin.<br
/> whether i need to run the command of service iptables-save. also when i put -p in my iptables command it gives me the error. so what shud I do?</p> ]]></content:encoded> </item> <item><title>By: figure</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-139698</link> <dc:creator>figure</dc:creator> <pubDate>Thu, 31 May 2007 23:18:52 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-139698</guid> <description>joe,
Here is the command you need (a little late).
/sbin/iptables -A INPUT -p tcp -v --match multiport --dports 6881:6999 -j ACCEPT
/sbin/iptables -A OUTPUT -p tcp -v --match multiport --dports 6881:6999 -j ACCEPT
To get rid of these rules after you are done,
/sbin/iptables -D INPUT -p tcp -v --match multiport --dports 6881:6999 -j ACCEPT
/sbin/iptables -D OUTPUT -p tcp -v --match multiport --dports 6881:6999 -j ACCEPT
The key change is the --match option as it loads a module that allows the --dports (or --destination-ports) to be used.  It can load many other modules besides the multiport module, but this is the one we need here.</description> <content:encoded><![CDATA[<p>joe,</p><p>Here is the command you need (a little late).</p><p> /sbin/iptables -A INPUT -p tcp -v &#8211;match multiport &#8211;dports 6881:6999 -j ACCEPT</p><p> /sbin/iptables -A OUTPUT -p tcp -v &#8211;match multiport &#8211;dports 6881:6999 -j ACCEPT</p><p>To get rid of these rules after you are done,</p><p> /sbin/iptables -D INPUT -p tcp -v &#8211;match multiport &#8211;dports 6881:6999 -j ACCEPT</p><p> /sbin/iptables -D OUTPUT -p tcp -v &#8211;match multiport &#8211;dports 6881:6999 -j ACCEPT</p><p>The key change is the &#8211;match option as it loads a module that allows the &#8211;dports (or &#8211;destination-ports) to be used.  It can load many other modules besides the multiport module, but this is the one we need here.</p> ]]></content:encoded> </item> <item><title>By: Darkly</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-139693</link> <dc:creator>Darkly</dc:creator> <pubDate>Thu, 31 May 2007 20:52:52 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-139693</guid> <description>replace -destination-port with --destination port and you will be fine.</description> <content:encoded><![CDATA[<p>replace -destination-port with &#8211;destination port and you will be fine.</p> ]]></content:encoded> </item> <item><title>By: joe</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-91431</link> <dc:creator>joe</dc:creator> <pubDate>Sat, 17 Mar 2007 17:04:14 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-91431</guid> <description>hi,
i tried running the sample code:
iptables -A INPUT -p tcp –destination-port 6881:6999 -j ACCEPT
but the shell spit up &quot;bad argument &#039;-destination-port&#039;&quot;
i looked in the help file for my version of iptables and could not find this parameter.  i tried the other parameters that seemed similar, -d &amp; --destination.  The latter worked, while the former did not.  In the help file the -d option appears with a &#039;[!]&#039; next to it - what does this indicate?
despite my success with &#039;--destination&#039; a new error popped up.  &#039;-p&#039; was considered a bad argument.  i tried &#039;--proto,&#039; the alternative according to the help file, but to no avail.
what do you suggest?
thanks for your time,
joe</description> <content:encoded><![CDATA[<p>hi,<br
/> i tried running the sample code:</p><p>iptables -A INPUT -p tcp –destination-port 6881:6999 -j ACCEPT</p><p>but the shell spit up &#8220;bad argument &#8216;-destination-port&#8217;&#8221;</p><p>i looked in the help file for my version of iptables and could not find this parameter.  i tried the other parameters that seemed similar, -d &amp; &#8211;destination.  The latter worked, while the former did not.  In the help file the -d option appears with a &#8216;[!]&#8216; next to it &#8211; what does this indicate?</p><p>despite my success with &#8216;&#8211;destination&#8217; a new error popped up.  &#8216;-p&#8217; was considered a bad argument.  i tried &#8216;&#8211;proto,&#8217; the alternative according to the help file, but to no avail.</p><p>what do you suggest?</p><p>thanks for your time,</p><p>joe</p> ]]></content:encoded> </item> <item><title>By: Anonymous</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19360</link> <dc:creator>Anonymous</dc:creator> <pubDate>Fri, 22 Sep 2006 23:37:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19360</guid> <description>oh yeah! Now I don&#039;t get that yellow ball when using BitTornado.
Thanks a lot!!! :)</description> <content:encoded><![CDATA[<p>oh yeah! Now I don&#8217;t get that yellow ball when using BitTornado.</p><p>Thanks a lot!!! :)</p> ]]></content:encoded> </item> <item><title>By: nixcraft</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19359</link> <dc:creator>nixcraft</dc:creator> <pubDate>Mon, 03 Jul 2006 02:48:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19359</guid> <description>6881:6889 ==&gt; More than sufficient for Bittorent client.
If you are going to distribute torrents then use 6881:6999</description> <content:encoded><![CDATA[<p>6881:6889 ==&gt; More than sufficient for Bittorent client.</p><p>If you are going to distribute torrents then use 6881:6999</p> ]]></content:encoded> </item> <item><title>By: Anonymous</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19358</link> <dc:creator>Anonymous</dc:creator> <pubDate>Tue, 27 Jun 2006 09:10:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19358</guid> <description>is the default port range 6881:6889 or 6881:6999 - the article mentions both, seems a confict there.</description> <content:encoded><![CDATA[<p>is the default port range 6881:6889 or 6881:6999 &#8211; the article mentions both, seems a confict there.</p> ]]></content:encoded> </item> <item><title>By: nixcraft</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19357</link> <dc:creator>nixcraft</dc:creator> <pubDate>Tue, 04 Apr 2006 00:52:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19357</guid> <description>To fix first error run command:
&lt;B&gt;modprobe ip_tables iptable_filter ipt_state ip_conntrack ipt_LOG iptable_mangle&lt;/B&gt;
Then verify module loaded with following command:
&lt;B&gt;lsmod &#124; grep ip&lt;/B&gt;
If above two command fails with an error then you need to upgrade your kernel. Btw specify your Linux disto…
To fix second error, type rule as follows (it is --source-port not &lt;B&gt;--source-ports&lt;/B&gt; ):
&lt;B&gt;iptables -A OUTPUT -p tcp --source-port 6881:6999 -j ACCEPT&lt;/B&gt;</description> <content:encoded><![CDATA[<p>To fix first error run command:<br
/> <b>modprobe ip_tables iptable_filter ipt_state ip_conntrack ipt_LOG iptable_mangle</b></p><p>Then verify module loaded with following command:<br
/> <b>lsmod | grep ip</b></p><p>If above two command fails with an error then you need to upgrade your kernel. Btw specify your Linux disto…</p><p>To fix second error, type rule as follows (it is &#8211;source-port not <b>&#8211;source-ports</b> ):<br
/> <b>iptables -A OUTPUT -p tcp &#8211;source-port 6881:6999 -j ACCEPT</b></p> ]]></content:encoded> </item> <item><title>By: Anonymous</title><link>http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19356</link> <dc:creator>Anonymous</dc:creator> <pubDate>Tue, 04 Apr 2006 00:33:00 +0000</pubDate> <guid
isPermaLink="false">http://www.cyberciti.biz/tips/linux-iptables-open-bittorrent-tcp-ports-6881-to-6889.html#comment-19356</guid> <description>[root@server html]# iptables -A INPUT -p tcp --destination-port 6881:6999 -j ACCEPT
iptables v1.3.0: can&#039;t initialize iptables table `filter&#039;: iptables who? (do you need to insmod?)
Perhaps iptables or your kernel needs to be upgraded.
[root@server html]# iptables -A OUTPUT -p tcp --source-ports 6881:6999 -j ACCEPT
iptables v1.3.0: Unknown arg `--source-ports&#039;
Try `iptables -h&#039; or &#039;iptables --help&#039; for more information.
How to fix that?</description> <content:encoded><![CDATA[<p>[root@server html]# iptables -A INPUT -p tcp &#8211;destination-port 6881:6999 -j ACCEPT<br
/> iptables v1.3.0: can&#8217;t initialize iptables table `filter&#8217;: iptables who? (do you need to insmod?)<br
/> Perhaps iptables or your kernel needs to be upgraded.<br
/> [root@server html]# iptables -A OUTPUT -p tcp &#8211;source-ports 6881:6999 -j ACCEPT<br
/> iptables v1.3.0: Unknown arg `&#8211;source-ports&#8217;<br
/> Try `iptables -h&#8217; or &#8216;iptables &#8211;help&#8217; for more information.</p><p>How to fix that?</p> ]]></content:encoded> </item> </channel> </rss>
