Firewall blocks some services when sharing internet connection

Hello,
I have some issues regarding internet sharing that I hope someone could successfully troubleshoot :
2 computer, iMac G5 2.0 and an original "17 PowerBook G4 1.0, both running 10.4.7.
The iMac is connected to the internet via Ethernet and shares its connection with the PB using the Airport.
The problem is that when the Firewall is enabled (just using the built-in one) the shared connection is limited for only few services :
Web browsing, iPhoto and iTunes Bonjour sharing, Apple Remote Desktop all work smoothly while iChat, MSN Messenger, Bittorrent clients can't connect and Mail can't go Online (can't connect to my Gmail accounts). Since even enabling all default services in the list doesn't help the only solution is to completely disable the Firewall in the iMac. When the Firewall is off everything goes back to normal.
I tried to isolate the problem but I can't get my finger on the right ports to open.
I tested sharing the connection through Firewall instead but it's the same so It's definitely not related to the type of connection used to connect the two computers one to the other. It is strictly related to the Firewall.
I found two Apple documents :
http://docs.info.apple.com/article.html?artnum=107653
http://docs.info.apple.com/article.html?artnum=107594
I carefully followed the instructions but it didn't resolve the problem.
From reading the first document I learnt that port 443 is related to the Secure Sockets Layer service so I searched Apple document http://docs.info.apple.com/article.html?artnum=106439 for other ports related to that service but since I'm not an expert I couldn't figured it out right by myself.
Setting for the iMac side are as followed :
Network panel : Airport is active. (as recommended in http://docs.info.apple.com/article.html?artnum=107594 I set Airport to the highest port priority).
Sharing panel/Services : Personal web sharing is set to ON. As I mentioned before even enabling all default services in the list doesn't help.
Sharing panel/Internet : Internet sharing is ON. "Share your connection from" is set to Airport. "To computers using" : Airport checkbox checked. I tried the Firewall option instead as well.
Appleshare is ON and automatically configured (zero configuration in the Firewall) on both macs.
Ports for iChat, MSN and Gmail on the iMac side are open. iMac has no problem to connect to these services directly.
On the PB side turning the Firewall on or off resulted the same.
Could someone please help me to configure the Firewall so it won't have to be always turned off?
Your help is much appreciated
Elad
Original PowerBook "17/iMac G5 2.0 "20   Mac OS X (10.4.7)  

In the Sharing pane of System Preferences, click the Advanced button under the Firewall tab, enable firewall logging, and then try using those services on the other computer. When done, check the firewall log and look for the number after the : in the logged entries; this is a port number. Knowing the IP address of the other machine will help determine which entries were produced by it as opposed to ones which came from the Internet; this is visible in the Network pane of System Preferences.
(15371)

Similar Messages

  • Can I manage devices when sharing internet connection?

    I'm sharing an internet connection over wifi on my rMBP and I'm wondering if there's a way I can see a list of the devices currently accessing it.

    Hey Dino,
    Try Forgetting the Wi-Fi network as described in this article. http://support.apple.com/kb/TS1398
    If forgetting the Wi-Fi network does not resolve the issue, try Resetting Network Settings on the iPhone, go to Settings> General> Reset> Reset Network Settings.
    If it still has an issue restore the iPhone: http://docs.info.apple.com/article.html?artnum=305744
    Jason

  • Kernel Panics when sharing internet connection

    Sharing a dial-up connection may be snail slow but works apart from the Kernel panics that I have narrowed down to this.
    Originally thought that they were related to being online but my Powerbook spent seven weeks in hospital (still fuming!!) and the G5 imac never panicked in that time. As soon as it came back and I turned on Internet sharing the panics resumed- even when the Powerbook is sleeping!
    Mmmmm .... Any thoughts?

    Can you check whether TCP header compression is turned on? (Network Prefs -> Internal Modem -> PPP Tab -> PPP Options...) There's a problem with sharing the modem and using header compression. Once I turned it off, all was well - haven't had a kernel panic since last June, I think it was. There was a discussion back then on this issue and someone managed to figure out this workaround.
    It was raised as a bug. I haven't inquired lately as to the status of it; the last time I inquired was just after 10.4.2 was released (July) and it hadn't been fixed.
    Hubert

  • Firewall necessary for Point to Point internet connections?

    Firewall necessary for Point to Point internet connections? We have multiple point to point t1 connections to our sites and was wondering if a firewall should be in place to filter traffic. We are also implenting a microwave t1 from a service provider and was wondering if firewalls would be needed for just this or the wired as well. According to the microwave company no firewalls are needed. Do i really want to leave security in the hands of the ISP?

    Matt,
    If you are buying private line T1 service from a carrier that connects 2 of your sites you would not use a firewall. Your traffic is never mixed with any other traffic. If your data is very sensitive, or if you have to comply with Payment Card Industry standards then you might want to encrypt your data, but a firewall would still not be necessary.
    If you have a T1 connecting you to the Internet for Web browsing etc then you very much do need a firewall.
    Please rate helpful posts.
    Dave

  • Connecting to shared internet connection through Mac osx 10.7 wifi

    I can't get my new HP touch pad to connect to my wireless network. I connect my iMac through ethernet but have a wifi network setup from my iMac so my other devices can use my iMacs shared internet connection. The touchpad will not connect, it finds the network, I put in the WEP key and it states "unable to connect, try again". I am at the setup stage on the touch pad and can't get any further!!. I have tried everything I can think of including creating a new wireless network, disabling and changing the sharing password and re-enabling. all my other devices still log on fine and can connect to the internet through the iMacs connection. anyone got any ideas? 
    Post relates to: HP TouchPad (WiFi)

    alopix wrote:
    I just remembered why I ignored your first post when reading this topic:
    Ad-hoc-sharing can't be the problem, because when I use the exact same method without any WEP encryption, so create an open network, it works perfectly - so it has to be an error in the webOS' handling of WEP or similar...
     I'm curious that the Mac offers only ASCII (key length of 5 characters) or 128 bit encryption, but not 64bit (which has a key length of 10 hexadecimal characters and works perfectly with my touchpad).  <Wiki definition of WEP.>
    This sounds like an old problem we used to have when Palm came out with WiFi-enabled devices. Users would create an ASCII text password in their router, and it would generate a 10 character hexadecimal string that was the true password.  Entering the 5-digit ASCII code would fail since it was a seed, and not the "real" code.. Entering the 10-digit key worked every time.
    By any chance is this what is occurring on the Mac? Do you see a 10 digit code generated anywhere in the setup routine?
    Was the link I provided to you of any help?
    WyreNut 
    I am a Volunteer here, not employed by HP.
    You too can become an HP Expert! Details HERE!
    If my post has helped you, click the Kudos Thumbs up!
    If it solved your issue, Click the "Accept as Solution" button so others can benefit from the question you asked!

  • Sharing internet connection - HOW?

    I'm sharing internet connection with a PC via netgear. Now we want to add another ibook to the connection. How do I open the network so that it can share the connection? It keeps saying that the network password is incorrect, when it's not... Any ideas?
    Thanks!

    Are you using WEP?
    One of the problems with WEP is that the actual standard relies on a 10 character HEX key for 40bit WEP and a 26 character HEX key for 128bit WEP.
    In order to make things easier for people, vendors use certain algorithms to convert simple alphanumeric passwords (or passphrases) into HEX keys, thus enabling people to use simple memorable WEP password rather than lengthy HEX keys.
    The problem is that different vendors use different algorithms to generate the HEX key and therefore a ASCII password on an AEBS will be hashed differently on a Netgear client and vice versa.
    One thing is a 13 character 128 bit WEP password will be hashed by all vendors in the same way (if you use 40bit WEP then a 5 character password is required).
    Though sometimes not even that works and the HEX key must be used regardless.
    I have found this to be the case with all the Netgear routers I have used.
    AirPort: Joining an encrypted wireless network
    http://docs.info.apple.com/article.html?artnum=106424
    Choosing a password for networks that use Wired Equivalent Privacy (WEP)
    http://docs.info.apple.com/article.html?artnum=108058

  • When an internet connection is available, I run iTunes and it shuts down on my Windows 7 64bit computer.

    When an internet connection is available, I run iTunes and it shuts down on my Windows 7 64bit computer.  It used to crash when I went to the iTunes store but, after installing the newest version of iTunes it crashes if there is an internet connection.  I can turn off my internet access and then run the software but, once I try the iTunes store again it crashes.  It does not give an error message as to why its doing this.  Just says it encountered a problem.  I cannot do anything with my iPad or iPod without this working.  Its extremely frustrating.
    I have also contacted Apple several times and they give me links to other's problems but, none have worked to fix this.

    Close your iTunes,
    Go to command Prompt -
    (Win 7/Vista) - START/ALL PROGRAMS/ACCESSORIES, right mouse click "Command Prompt", choose "Run as Administrator".
    (Win XP SP2 & above) - START/ALL PROGRAMS/ACCESSORIES/Command Prompt
    In the "Command Prompt" screen, type in
    netsh winsock reset
    Hit "ENTER" key
    Restart your computer.
    If you do get a prompt after restart windows to remap LSP, just click NO.
    Now launch your iTunes and see if it is working now.

  • Whenever i open itunes on my iphone it shows "Cannot connect to iTunes" even when my internet connection is fine.

    Whenever i open itunes on my iphone it shows "Cannot connect to iTunes" even when my internet connection is fine.

    Try restarting the iPhone.
    If that doesn't do it, one thing that others have done to fix this is manually set the date and time a few months out  (Settings > General > Date & Time), test it again, and then set it back to the correct time.
    You can also take a look at this Apple doc for other ideas -> Can't connect to the iTunes Store

  • HT5163 I keep getting No Service when trying to connect my unlocked phone to a new carrier. I know the SIM card works so it is an iPhone or AT&T issue.

    I keep getting No Service when trying to connect my unlocked phone to a new carrier. I know the SIM card works so it is an iPhone or AT&amp;T issue. Can anyone help me with this please?

    You must complete the unlock process with the ATT SIM in the phone. Follow the directions you received with the email saying that your unlock was approved.
    At the end of the process you should have gotten an message saying that your phone was succesfully unlocked.

  • Suggestion when only able to connect to some services when using Kerberos.

    I had been having problems using Kerberos for authentication for some services. It worked fine when on a LAN and worked when I had a VPN (MS-CHAP). But when trying to connect normally, I was able to get a TGT, but often ran into issues when trying to connect to other services (e.g. IMAP / VPN). What's more, sometimes everything did work, but stopped again soon after.
    My setup has one server providing all the services in question. There were several CNAMES linking the different services (e.g. ichat.mydomain, mail.mydomain etc).
    I found a number of people who seemed to have similar issues, but the threads were archived so I couldn't post a reply. So I'm hoping they come across this message and it helps them.
    Because of an unrelated problem, it was brought to my attention that there were some problems with the DNS records relating to my domain – not on my server, but on the net.
    After some experimenting, I discovered that if I set the DNS (in System Preferences) on my client Mac to the server I was contacting most things worked.
    It seems that the Kerberos system may do a reverse lookup at some point, or something similar.
    When I do a "dig -x <my ip address>" I get different responses over time, and from different DNS servers. When I did "dig @<my own dns> -x <my ip address>" it always came back with the correct server name.
    So perhaps the issue lies with the DNS that your machine is looking up? This would explain why it works on the lan (the DNS is probably your server) and over VPN (again your server is the DNS).
    This may not be the answer to these people's problems, but if you were getting messages such as "Server not found in Kerberos database" in your logs, it may pay to check what is getting return by DNS servers outside your organisation.
    HTH.
    iMac G3   Mac OS X (10.4.8)  

    CharlieJ wrote:
    The problem is this: When any one of the computers is connected to the internet through the DSL none of the others computers is able to connect – I see the message “Connecting through WAN miniport (PPOE)…”, i.e. I am only able to connect to the internet 1 computer at a time.
    As soon as I disconnect from the ‘connected’ computer (desktop or laptop) I am immediately able to successfully connect to the internet on either of the other 2 computers.
    I’ve tried resetting everything – no luck.
    I don’t recall having changed any of the settings and am baffled.
    Any thoughts as to the problem?
    Thanks in advance for any help.
    Charlie
    PS. I haven't called the Verizon DSL Tech Support team yet...but I will soon. I figured on asking here first.
    Ok.
    #1 You must get to the network control panel on your computer.
    One of the ways, for Windows XP is:
    a) Go to Start -> Control Panel -> Network Connections
    b) The screen will look like steps 5 and 6, on http://portforward.com/networking/static-xp.htm
    For Windows Vista:
    a) Go to the globe icon (start button) -> Control Panel -> Network and Sharing Center -> Manage Network Connections.
    b) The screen will look like steps 5, 6, and 7, on
    http://portforward.com/networking/static-vista.htm
    #2 Right click on the WAN miniport (PPPOE), and remove the check mark that says Set as Default Connection.
    ^^
    If you are the original poster (OP) and your issue is solved, please remember to click the "Solution?" button so that others can more easily find it. If anyone has been helpful to you, please show your appreciation by clicking the "Kudos" button.

  • Are there any issues when using AirPlay on an Apple TV that is using a shared internet connection?

    I am currently in a hotel and I have my MacBook Pro, iPad, and Apple TV (2nd gen). The hotel I'm in has both wired and wireless internet connections. I cannot directly connect my Apple TV to either connection because the hotel connections require you to agree to some terms and conditions that the Apple TV can't access. To further complicate things the ethernet connection in my room doesn't work at all. So the solution I found to at least connect the Apple TV to the internet was this: using my MacBook Pro, I connected to the hotel wireless connection (to bypass the hotel internet's T&C). I then shared that wireless connection via ethernet to the Apple TV. It works. I can watch YouTube and Netflix but I can't take advantage of AirPlay. I've updated, restored, and reset the Apple TV numerous times, but no luck. Are there any settings or connections I'm missing?

    Airplay from what?  iTunes or iPad?
    I assume iPad - in this setup the iPad and AppleTv will be unlikely to be able to see each other on the hotel network even if both are connected wirelessly.  If they can and you don't have a user/room  specific login I'd be concerned about other users seeing my devices too.   These things are generally designed for single user access not to create your own local network.  I suspect in the T&Cs for the wi-fi service it may preclude sharing the internet connection with another device, but if it works....

  • Sharing internet connection over wifi - 2 questions

    I have a Mac mini that is connected to a cable modem by ethernet, and then broadcasts a wireless network to share that connection. It seems silly to buy a wireless router when one of my computers can be the router.
    The mini's firewall is enabled, and has a few ports open to allow computers on the network to use email, web, ssh and other services. I have two questoins that have been nagging me about this setup:
    1) I can log into the mini from outside via ssh with its IP address. But what if I want to log into another computer on the network? My iMac has an internal IP address of 10.0.x.x... how do I ssh to that address from outside the firewall? Would it look like "ssh y.y.y.y:z.z.z.z"?
    2) When I tell my firewall to block all UDP traffic (seems like a sensible option to make the setup more secure) email and other services no longer work on computers on the LAN. Must UDP traffic be open for the internet connection to be shared?

    >1) I can log into the mini from outside via ssh with its IP address. But what if I want to log into another computer on the network? My iMac has an internal IP address of 10.0.x.x... how do I ssh to that address from outside the firewall? Would it look like "ssh y.y.y.y:z.z.z.z"?
    You can't log into a system 'behind' the Mini without playing lots of games regarding port forwarding (for which there is no built-in GUI). In addition to that you can't use port 22 since that will always point to the Mini itself. What you'll have to do is use some other port (e.g. port 2222) and have the mini forward that to port 22 on the internal machine. Then you can connect to port 2222 on your public IP address and get forwarded to the internal machine. PITA to manage, though.
    >2) When I tell my firewall to block all UDP traffic (seems like a sensible option to make the setup more secure) email and other services no longer work on computers on the LAN. Must UDP traffic be open for the internet connection to be shared?
    Blocking UDP is no security feature at all - either your machine is listening to the UDP socket or it isn't.
    In any case, DNS typically uses UDP, so you're blocking your DNS queries and that's most likely to be what's hindering your network.

  • Airport network and sharing Internet connection

    Hello all,
    I have hit this problem with sharing an internet connection on an airport network. Maybe its a simple fix, maybe it a "can not be done", answer.
    My set up may be a little hard to describe. To explain, completely wireless set up in my network, 1 x imac and 1 x powerbook, all on airport and using an airport express. This includes my new printer. All connected through airport express network, call it network A.
    Up till now i had a modem with an ether net cable plugged into the airport express. All was fine.
    I am in jakarta, the cable internet providers here are hopeless, slow connection speed.
    Last month a new wireless internet service was released. Called 3.5 G. Its lightning fast and reliable. Basically you get a wireless USB modem attach it to your computer and you are always connected to the internet wirelessly. You can travel anywhere with it. The 3.5G is primarily for mobile phones but i use it just for internet. This modem is connected to my powerbook and works great.
    Now, the useless cable internet connected to my airport express is still connected for my Imac to use.
    My problem is that i would like to share my high speed internet connection from my laptop to my imac. Problem is that when i allow sharing from my laptop, the intenet works fine on both machines but on the powerbook, which is doing the sharing you get an arrow symbol through the airport icon at the top.
    The laptop can NOT access the local airport express network A. Hence i cannot use the printer or see the imac. That is my problem, i cannot print from the powerbook unless i stop sharing. When you share an internet connection the sharing computer seems to create another computer to computer network and does not join the existing arirport network.
    This is probably a little confusing. Hopefully, someone may have some ideas. My alternative is to buy a new fixed position modem/router for the 3.5G system. Its about $600. Ouch.
    Any ideas
    thanks for the interest.
    joe

    Selamat Phil Smith,
    Actually do we know each other, cause i know a phil smith.
    Actually an ether net cable is OK for the short term. But if i get another computer it may get complex. Spent a lot removing cables too.... Looks like i will have to buy the special modem router... Painful $600.
    This share internet thing over airport looks like a great idea till you realise it disables access to the ariport network for the computer doing the sharing.
    Cheers and thanks for the idea
    joe

  • Having problems sharing internet Connection from Macbook to Vonage Adapter

    Hello,
    I just got my Vonage adaptor and I am trying to share the Internet connection from my Macbook Pro (10.7.3) to the Adaptor to use the Vonage service bc my router is downstairs.
    I turned off my Firewall, hooked my Vonage adapter to the Macbook with the ethernet cable and then went to Sys Preferences > Sharing > Selected Internet Sharing > Share Connection from Wifi to computers using Ethernet, and it looks like everything is ok but when i try to use the phone which is connected to to Vonage Adapter, it says "Your Vonage device cannot connect to the internet, check to see if your high speed internet is down".
    I went and looked at my Network preferences and it shows Ethernet connected which is the Vonage Adapter and gives the following:
    IP Address: 169.254.163.167
    Subnet Mask: 255.255.0.0
    Is there something Im doing wrong? Ive seen on several forums that its possible to do but having bad luck. Any help is appreciated.

    All I know is that I got Ubuntu to share internet and offer IPs through DHCP by using Firestarter. I am very new to Solaris, however, and am looking forward to learning about it. I've just made it my regular desktop environment. Long as you can get Solaris to configure its network interface with DHCP after your Ubuntu is configured, you should be able to share to as many clients as you'd like. Fedora also works well for that, and in my opinion, it's a better Linux than Ubuntu, though Solaris remains a better Linux than Linux, right? Har.

  • Problems sharing internet connection - works only one way...

    hey all,
    i'm having a problem sharing my internet connection between our "new" iBook G4 and "old" iMac G5. (both machines are running 10.4.10.) i've seen several posts here that seem related, but no answers that have worked in my case.
    here's the gist:
    ideally, i'd like share the internet connection from the iMac (from our cable modem) to the iBook over the airport. so, i've set up the iMac to do this under "sharing" in system preferences. i then set up the iBook to connect to this new wireless network. under "network status", it says the iBook is connected to the iMac's network, but that the iBook doesn't have its own IP address, so it can't connect to the internet.
    oddly, when i reverse the process - i.e. plug the modem into the iBook and share the connection over the airport to the iMac - it works fine. the iMac gets its own IP address and can see the internet.
    a friend suggests that somehow the iBook is set up to distribute IP addresses as a router, but the iMac isn't. fine. but, i don't know how to make changes to that function.
    any thoughts?

    well, it's taken all day - many, many attempts. but i've finally found something that worked. the answer was burried in the middle of this guy's blog page:
    http://www.tuaw.com/2007/03/26/how-to-using-your-mac-as-a-nat-router/
    he says:
    "I've turned off DHCP and set the address to: 192.168.0.1 and the subnet to 255.255.255.192 In making these choices I was following a hint that appeared at macOSXhints back in 2002. Once this is done I went back to the Internet tab of Sharing Preference Pane, select en4 and start it.
    "Now on my other device (in this case a Xbox 360) I set it up as follows:
    "IP address: 192.168.0.2 subnet: 255.255.255.192 (this is the same subnet of the en4 USB interface, above) gateway/router: 192.168.0.1 (this is the address of the en4 interface) DNS: 192.168.2.1
    "(here's where the voodoo comes in, I have no idea why this DNS setting works. You would think it should be 192.168.0.1, or even the DNS server of my ISP, but those simply do not work. I suspect that it has something to do with sharing over Airport as well).
    "I've also found that this will only work properly if Internet Sharing is active for my Airport interface. If I turn off the Airport interface (en1), the wired interface (en4) also dies. With these settings in place, everything seems to work properly. Keep in mind you may also need to enable certain services (which will vary with your application) in the Services tab of the Sharing Pane:"
    i wasn't trying to solve quite the same problem he was, but by manually inputting the IP addresses, etc, that he did, as well as randomly enabling other "sharing" options (FTP access, etc) which seemed unrelated to internet sharing, it finally worked.
    can anyone explain what this is about? it all seems pretty cryptic to me. i'm not sure what i even did...
    no complaints, but it would be interesting to know.
    thanks!

Maybe you are looking for

  • SQL Developer Data Modeler: Logical model, unable to create arc

    I have a logical model in SQL Developer Data Modeler. Entity A has two 'incoming' foreign key relations to entities B and C. Both releations have the same optionality and cardinality. I want to place both relations in an arc. I see the buttons in my

  • Trying to retrieve old project with no luck

    I made a short movie (2 minutes) in iMovie last month, shared it to the Media Browser and then did the final production in iDVD. I burned a few discs and all was well. In order to free up space, I moved the project from iMovie to an external disc. (I

  • Second hand blackberry 9320

    My sister's friend gave me a second hand blackberry curve 9320.According to her, the phone was originally set in Arabic (she found the phone whens she was in Saudi). As a matter of fact, I never had BB before. So everything abount BB is new to me. So

  • I accidently deleted apple mobile device driver how do I get it back?

    I am using a Toshiba c650 laptop with windows 7 64 bit home premium . I tried system restore but to no avail I also reinstalled itunes but no good Any help would be appreciated.

  • Changing PI AF Messaging attributes in PI7.11

    Dear Experts, We want to increase the Assigned Threads of the "RFC_http://sap.com/xi/XI/SystemRecv" in PI7.11. WE used to increase the threads previously from Visual Administrator -> Services -> SAP XI AF Messaging in PI7.0. In PI7.11 using NWA, we a