Remote setup via Internet

Hi folks,
Could you please shed me some light where can I find relevant document re. remote setup/configure server via Internet.  I have been searching on Wiki without result.  I have no problem to setup/configure server remotely on Intranet via ssh.  TIA
B.R.
satimis
Last edited by satimis (2008-02-17 16:26:00)

remote wrote:So many ways to do the same thing, makes it a challenge at times.
For your name check /etc/rc.conf and /etc/hosts
on /etc/rc.conf
changed;
HOSTNAME="arch"
to;
HOSTNAME="arch.satimis.com"
similar to that on /etc/hosts.  Rebooted PC
Now
$ hostname
$ hostname -f
arch.satimis.com
Thanks.  Is there any way avoiding a reboot?
On iptables it would depend on method, to know your IP, hopefully it's static.
iptables -A INPUT -s 192.168.255.48 -p tcp -m tcp --dport 22 -j ACCEPT
iptables -A INPUT -p tcp -m tcp --dport 22 -j DROP
iptables -A OUTPUT -d  192.168.255.48 -p tcp -m tcp --sport 22 -j ACCEPT
iptables -A OUTPUT -p tcp -m tcp --sport 22 -j DROP
$ cat /etc/iptables/iptables.rules
# Generated by iptables-save v1.3.8 on Sun Feb 17 07:00:44 2008
*filter
:INPUT DROP [3:96]
:FORWARD DROP [0:0]
:OUTPUT ACCEPT [0:0]
:interfaces - [0:0]
:open - [0:0]
-A INPUT -p icmp -m icmp --icmp-type 18 -j DROP
-A INPUT -p icmp -m icmp --icmp-type 17 -j DROP
-A INPUT -p icmp -m icmp --icmp-type 10 -j DROP
-A INPUT -p icmp -m icmp --icmp-type 9 -j DROP
-A INPUT -p icmp -m icmp --icmp-type 5 -j DROP
-A INPUT -s 127.0.0.0/255.0.0.0 -i eth0 -j DROP
-A INPUT -s 192.168.0.0/255.255.0.0 -i eth0 -j DROP
-A INPUT -s 172.16.0.0/255.240.0.0 -i eth0 -j DROP
-A INPUT -s 10.0.0.0/255.0.0.0 -i eth0 -j DROP
-A INPUT -p icmp -j ACCEPT
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -j interfaces
-A INPUT -j open
-A INPUT -p tcp -j REJECT --reject-with tcp-reset
-A INPUT -p udp -j REJECT --reject-with icmp-port-unreachable
-A INPUT -p tcp -m tcp ! --tcp-flags FIN,SYN,RST,ACK SYN -m state --state NEW -j DROP
-A INPUT -f -j DROP
-A INPUT -p tcp -m tcp --tcp-flags FIN,SYN,RST,PSH,ACK,URG FIN,SYN,RST,PSH,ACK,URG -j DROP
-A INPUT -p tcp -m tcp --tcp-flags FIN,SYN,RST,PSH,ACK,URG NONE -j DROP
-A interfaces -i lo -j ACCEPT
-A interfaces -i eth0 -j ACCEPT
-A open -p tcp -m tcp --dport 22 -j ACCEPT
-A open -i ppp0 -p tcp -m tcp --dport 80 -j ACCEPT
COMMIT
I'm running static IP here.  I'll add your 4 lines at the bottom of the file, changing "192.168.255.48" to "192.168.0.52", IP addr of Arch.
Would there be any conflict to the existing rules?  It seems there is no OUTPUT rule there.
re;
INPUT DROP [3:96]
what does 3:39 represent?  Drop time?  TIA
B.R.
satimis

Similar Messages

  • Remote access via internet to another macbook

    I would like to access my moms computer when she needs help sometimes via the internet. We both have Macbooks and high speed internet. Before I move away I can install whatever is necessary on her computer. Then if she has computer problems (as she often does) I can go onto her computer to sort it out. (Obviously, I will have to phone her to tell her to open up the computer). Is this a really involved thing that I am asking? I don't really know where to start. I have heard of remote desktop but after reviewing it, it sounds like it is much more than what I am looking for. Any info to point me in the right direction would be much appreciated.

    So why is system prefs saying, "To log in to this computer remotely, type "ssh [email protected]" at a shell command prompt."
    Is it just because it doesn't know its behind the router?
    I have tried telling finder to connect to server; vnc://65.95.40.34 and it just times out.
    I have also tried setting Chicken of the VNC to;
    HOST: 65.95.40.34
    Display: 0
    Password: (password that I set for login on her computer)
    This just times out eventually.
    I have also tried terminal both ways:
    "ssh [email protected]" and
    "ssh [email protected]"
    and it tells me "ssh: connect to host 65.95.40.34 port 22: Operation timed out"
    It take a minute or two using any of these methods before it tells me that its timed out.
    I have made sure that she has her computer opened up and turned on of course and the settings so it will wake if admin accesses remotely.
    Any ideas as to why this wouldn't work?
    Thanks for all the info.

  • Remote Setup via WAN

    I have a wireless network using an AEBS (2009) with 2 AX set up to "Extend a wireless network". Logging onto the AEBS remotely is pretty straightforward: File>Configure Other...> enter the IP and password and I'm good. However I'm not sure how to access the AX units remotely. Is there a procedure for entering their assigned IPs along with the AEBS IP initially or do they have to be set up in Port Forwarding?
    I'm pretty new at this but I know that any changes involving passwords need to be done on the AX units first or else they won't appear in AU.
    TIA,
    Brian

    Dang, 46 views and nobody has an opinion on this?
    OK, How about this: on the AX options in Airport Utility there is the option to "Allow setup over the Internet using Bonjour"
    What does this mean exactly?

  • I want to stream to multiple ATV's at remote locations via internet..?

    I have 14 locations that i would like to stream a slide show and videos to. I would want to stream to all of the locations from one central location.....is this possible? I figure that this is a networking issue more than a device issue, but I really am not savvy enough to know how it's done. If anyone has any ideas I would great appreciate them. Sorry if this is posted somewhere else, I was not able to find anything that addressed this.
    Thanks

    Using the link I provided you can use Home Sharing over the internet between computers. The application has to be installed on both ends and you cannot install to the TV2. In order for it to work you would need the source computer with App > remote computer with App > TV2 .
    The number of ATVs you are wanting to use would be an issue. Each TV2 would need its own computer running the APP and iTunes. Each instance of iTunes and each TV2 would have to be activated on the same account. Accounts are limited to 5 activated computers. I'm not sure but I think the TV2 counts as an activated device and if it does you are looking at 3 activations for one over the internet stream ... source > remote computer > TV2 = 3 of your 5 activations. That only leaves room for one more over the internet stream.... remote computer > TV2 = 2 activations.
    So in short you would be able to stream to 4 TV2 over the internet at most if each TV2 does not count as an activation and only 2 if they do.
    This is all assuming it worked at all

  • Acessing home iMac with MacBook from remote location via internet????

    Is there a way to access files on my iMac at home with my MacBook via the internet as I do when I'm at home through my network?
    Thanks, Jason

    Hi Jason,
    Funny, we were just working on this topic. I'm assuming your iMac is behing a router, and it does NAT. An indicator would be if your iMac's IP address was something like 192.168.1.x or 10.0.0.x. In that case, the best way is to set up port forwarding in your router.
    Assuming you want to share files using Apple File Protocol, you need to forward port 548 from your router to port 548 on your iMac. Other protocols use different ports, but you didn't specify. I don't know what router you've got, so I don't how to configure it. It's probably got a web interface.

  • Access Remote Webservice via Internet

    Hi all,
    Iam new to Web Services ...
    Could any of u give me an Article or Code ... how could we access a basic webservice from Java ..... which is available remotly.
    plz help me .. tks in advance...

    abp_JavaPrg@mdu wrote:
    I got the same error while I trying to connect the server in that port via ssh.I know ssh is "the new telnet", but I did not say telnet to be retro. ssh does encryption stuff, telnet does not. For checking that a port is open and (if the server sends at least the handshake in a human readable format) checking that the server you think is running is running telnet is a better option.
    From the sounds of it the application you think is running is not running.

  • Remote access via internet

    Have an Vitek DVR with several cameras and after correctly configuring port forwarding on the router and input the IP to the DVR, I am able to view the camera pictures without any problems on the MacBook Pro. However, being able to view the camera results from the IPHONE via remote access, through Safari, requires an APP. Having tried the VITEK DVRViewer app, and half a dozen other apps, I am unable to connect via the iphone. I contacted VITEK and was informed that they are aware of the problem, which they say is due from the IOS6 update, an updated app was submitted to Apple for approval, which would solve the issue.
    I have found many hits on the YouTube with the same issues. Does anyone know of a solution, or if they were told by VITEK of the same solution?
    Thank you

    This would not seem to be an issue with Apple Remote Desktop, Apple's software for managing networked Macs and the topic of this forum. I'd suggest you take this up in the iPhone forum, where you'll be more likely to encounter someone attempting to run the same app and hence provide suggestions.
    Regards.

  • Printing to Remote Printer via Internet

    I travel a lot and would like to print to my office while on the road. I know I can email, but I also would like to have this capability if it's possible. Is there a way to set up the two computers to achieve this? If so how would I do it? Any help would be appreciated.

    (Need more details to give better instructions. what printer - is it connected to a computer?)
    You will have to enable port forwarding through the office router's firewall. This involves telling the router to send requests for a specific port to a specific local IP address. (and could be a security risk) Since most routers get their internet IP address by DHCP (it can change at any time), you'll probably need to subscribe to a service that keeps track of that, called dynDNS.org, so you can always use a (stable) domain name instead of IP address to print.
    Does it sound like what you want to do?

  • Managing remote clients via internet.

    The question have maybe been asked before.
    I have been speaking to Apple Support Sweden and UK and they give me different answers so now i would like to ask all the users of Apple Remote Desktop if what i would like to achieve with buying this software actually would works.
    I have Clients all over the world, all mac users, and they are never at one place longer than 24h. They have no higher computer skills then getting online to check mail and all the rest they need to be able to use to manage their work life.
    Would i be able to use ARD for accessing my client computers without having to ask them to contact the computer admin at the hotel or where ever they might be at that time and place to sort their port´s out.
    To be able to store the users details for future use and just ask the client to if needed a "whatsmyip.com" and that would be all i would need to access them much like Skype finds its way trough any possible firewall without VPN tunnels and things. Just that Skype would not really be as professional and functional as ARD
    Thank you all in advance.
    Best regards

    ARD would be awkward to use with clients that are always roaming. You'd constantly be dealing with IP address and router/port issues, something especially problematical with hotels where firewalls often block the necessary ports (and hotel admins generally will not alter their firewalls to accommodate such use). I would instead suggest a service such as LogMeIn. These services generally work much better with clients on the move.
    Regards.

  • Connect via internet

    I want to connect to one of my computers on the network from remote laptop via internet.
    When I dial the IP address I connect to the router. What do I have to setup to go directly to one of my computers?

    Assign the Static Ip to that computer. On the Router Forward a Port Number--3389--Select Protocol as "Both". type the IP add of that Computer.
    From Remote Location:
    In the add bar--type the WAN IP of the Router followed by Port No:3389...
      For example---
    Say your Router's IP add is 68.87.4.126....
      In the add bar type---68.87.47.126:3389.....
    Your issue will be resolved....
    I m sure your issue will be resloved.....

  • Help For Remote Access Via VPN

    Need Help
    what cisco product or router specification or model  can we use for VPN connection in our remote site via Internet Connection
    thanks Godbless

    There are several options here, but more information is probably needed to give a good recommendation.
    1.  What type of VPN?  A site to site VPN that stays up, or remote VPN that is more on demand?
    2.  What type of Internet access to have at your remote site?
    3.  Are you going to also use this as a gateway to the Internet or will this device sit to the side or behind your gateway?
    My first inclination is that if you just need occasional remote access to your remote site for support issues check out the ASA 5505.  Depending on where you will place it and what amount of user traffic will flow through it, you may be able to get by with just a base license and use IPSec remote VPN. 
    If this posts answers your question or is helpful, please consider rating it and/or marking as answered.

  • Lumia 520 "Remote wipe of user data via Internet"

    I'm interested in purchasing a Lumia 520 and read on the spec site that it can do "Remote wipe of user data via Internet" (http://www.nokia.com/in-en/phones/phone/lumia-520/specifications/).
    Is there any special software that I need to be able to do this (like have it connected to a BlackBerry server in the case of enterprise BlackBerry devices) or is it as simple as stated on (http://www.noknok.tv/2013/05/02/how-to-find-your-lost-nokia-lumia-running-windows-phone-8/) where all you have to do is log into windowsphone.com where you can erase a linked phone?
    This phone will be used for business so in case it is lost I need the ability te remote wipe it. Our company currently has a BB server and we all have BB devices, but with BB not doing so well I was thinking of getting a Nokia.
    Thanks.
    Solved!
    Go to Solution.

    WHNOKLUM520 wrote:
    So far so good. That's great news. If I could ask one follow up question though:
    Would it matter if the same SIM is installed on the phone? Lets say the 'thief' was able to get into the phone with a different SIM (if the security was not setup correctly) - would the phone be erased based on the SIM that's installed or on the IMEI number of the device?
    Thanks
    If there's no data connection, windowsphone.com cannot access your phone to send push notifications and if push notifications fail, then it will try to send SMS to your phone.
    I just tried to ring my phone after taking out the SIM card, it was connected to wi-fi and I could ring it.
    The silence will fall

  • How does one set up remote access via the internet to access files stored on the Time Capsule using airport utility 6.1

    I was just wondering if anyone can provide me with instructions please on how to set up remote access via the internet to the time capsule when away from home?
    I am running OS X Mountain Lion operating system and have Airport Utility 6.1.
    Many thanks to you all for your help.

    I think the instructions should be all in BTMM with iCloud.
    Instructions are all there.
    http://support.apple.com/kb/ht3486

  • Remote administration of small office via Internet possible?

    Hi forum,
    I am a sort of "administrator" (actually that one, who is always asked when there is a computer problem) within our small office group. But I am also very often on the road so I cannot help my workmates personally.
    Our office Macs are connected to the inside and outside world via a Time Capsule. I consider buying an ARD license, but I am unsure if this would enable me to hop on my workmates' Mac screen when I am on the road and want to connect via internet.
    Could you tell me if there is a way to accomplish this without buying new hardware or a subscription service?
    Cheers,
    Sven

    If all you need is to be able to control another computer at your office from a remote location, then ARD would be overkill. Look into the freeware VNC. That will give you control capabilities and not cost you anything. You can find VNC applications for Mac here. Mac OS X 10.4 and 10.5 already have a VNC component to allow you connect to the system so all you'd need is the portion on the computer from which you'd be taking the control. Most people seem to find Chicken of the VNC still works well for them, though it's not been updated in a while. JollyFastVNC, though still in development, is another option that's looking quite promising. You will need to open and forward the appropriate ports (TCP 5900) to the internal IP address of the system in your office. If you need to connect to more than one system, you'll need to run a third-party VNC application, such as VINE, on the office systems to you can designate the port; ARD only uses 5900 which only allows one computer to be controlled through an NAT device.
    Another option, if your users are all using Mac OS X 10.5, might be to use iChat. It allows screen sharing and isn't subject to the difficulties with IP addresses, network ports, etc. that arise when using ARD or any similar direct system control.
    Hope this helps.

  • Run Excel Remotely via internet

    I have a mini at home with Excel and a specific file I need to access remotely over the internet.
    I need to connect to the mini from a Mac and a PC, not necessarily at the same time, and run and edit that excel file.
    I do not want the PC to have access to anything on the mini aside from excel and that file.
    How do I do this?

    I connect from my Macbook to the mini via Back To My Mac. That's easy.
    But my business partner also needs to connect and run that excel file from Vista. However, I do not want him to have access to anything else.
    Message was edited by: Mac Fanatic

Maybe you are looking for