traceroute error :Permission Denied

From: abdul (freebsd_at_citizensbankng.com)
Date: 05/20/03

  • Next message: urPOS hotmail: "DHCP services and VLAN"
    To: <freebsd-questions@freebsd.org>
    Date: Tue, 20 May 2003 11:35:57 +0100
    
    

    Hi all,
    I run 4.7 and I get the following error when I issue a traceroute command :

    traceroute 128.1.100.1
    traceroute to 128.1.100.1 (128.1.100.1), 64 hops max, 44 byte packets
    traceroute: sendto: Permission denied
    1 traceroute: wrote 128.1.100.1 44 chars, ret=-1
    *traceroute: sendto: Permission denied

    A copy of my firewall config is:

    00100 divert 8668 ip from any to any via tl0
    00200 allow ip from 128.1.100.234 to any
    00300 allow tcp from any to any 80
    00400 allow udp from any to any 80
    00500 allow icmp from any to any
    00600 allow tcp from any to any 23
    00700 allow udp from any to any 23
    00800 allow tcp from any 23 to any
    00900 allow tcp from any to any 53
    01000 allow udp from any to any 53
    01100 allow tcp from any to any 42
    01200 allow udp from any to any 42
    01300 allow udp from any 53 to any
    01400 allow tcp from any to any 25
    01500 allow udp from any to any 25
    01600 allow tcp from any 25 to any
    01700 allow udp from any 25 to any
    01800 allow tcp from any to any 110
    01900 allow udp from any to any 110
    02000 allow tcp from any 110 to any
    02100 allow udp from any 110 to any
    02200 allow udp from any 80 to any
    02300 allow tcp from any 80 to any
    02400 allow tcp from any to any 80
    02500 allow udp from any to any 80
    02600 allow udp from any 3128 to any
    02700 allow tcp from any 3128 to any
    02800 allow tcp from any to any 3128
    02900 allow udp from any to any 3128
    03000 allow ip from any to any via lo0
    03100 allow tcp from any to any 443
    03200 allow udp from any to any 443
    03300 allow tcp from any 443 to any
    03400 allow udp from any 443 to any
    03500 allow udp from any 520 to any
    03600 allow udp from any to any 520
    65535 deny ip from any to any

    _______________________________________________
    freebsd-questions@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"


  • Next message: urPOS hotmail: "DHCP services and VLAN"

    Relevant Pages

    • NFS problem with recent 2.6 kernels (also serial console weirdness)
      ... 100000 2 tcp 111 portmapper ... 100000 2 udp 111 portmapper ... mounted filesystem with ordered data mode. ... Mounted root (ext3 filesystem) readonly. ...
      (Linux-Kernel)
    • Re: disable traceroute to my host
      ... >> You can traceroute with any protocol. ... TCP is just as easy as UDP. ... > the third is just an informative message (like the second isn't ...
      (FreeBSD-Security)
    • Solaris 9 <---> linux (2.6.8) NFS file locking problem?
      ... to the same file placed on nfs filesystem. ... 100000 4 tcp 111 portmapper ... 100000 4 udp 111 portmapper ... 100021 1 udp 4045 nlockmgr ...
      (SunManagers)
    • Urgent help with Secure NFS.
      ... have that option - I'm just attempting to tunnel all NFS traffic to the ... 100000 4 tcp 111 rpcbind ... 100000 4 udp 111 rpcbind ... 100021 1 tcp 49153 nlockmgr ...
      (SSH)
    • Re: nfs error
      ... kernel: nfs: server ... So if your system uses ypbind be sure that is working properly before ... 100000 2 tcp 111 portmapper ... 100000 2 udp 111 portmapper ...
      (comp.sys.sun.admin)