[NT4] socks proxy

Pagina: 1
Acties:

  • SandStar
  • Registratie: Oktober 2002
  • Laatst online: 16-08 15:50

SandStar

DPC-Crew

Zandster

Topicstarter
ik heb op m'n werk een NT4 bak met MS proxy 2.0 staan.

Achter die server staan een tiental pc's die wel kunnen internetten maar verder niets kunnen, pingen bijvoorbeeld.
Ik heb dit al een beetje kunnen oplossen door een socks proxy op te geven. Nu resolved hij bijvoorbeeld www.chello.nl naar het juiste ip adres (deed ie eerst niet) maar krijg ik nog steeds time-outs op ping packets.

Ik neem aan dat er aan de NT4 bak wat moet worden ingesteld, mijn vraag is alleen; wat?
De socks proxy geeft alleen teken van leven op poort 1080, de standaard poort als ik het goed heb.

Het idee is dat ik distributed net clients kan laten werken via deze socks proxy.

Enige suggesties? :)
(search geprobeerd, vond nix)

  • Koffie
  • Registratie: Augustus 2000
  • Laatst online: 19-08 22:47

Koffie

Koffiebierbrouwer

Braaimeneer

Achter die server staan een tiental pc's die wel kunnen internetten maar verder niets kunnen, pingen bijvoorbeeld.
Dan moet je een Proxy/inet deel proggel installeren die ook NAT aankan ;)

Daqn kun je op al die clients gewoon
code:
1
ping www.tweakers.net

Intikken, en krijgen ze gewoon een reply :Y)

Zie ook: Hoe deel ik Internet ?

Braaikamer - Smoke&BBQ


  • SandStar
  • Registratie: Oktober 2002
  • Laatst online: 16-08 15:50

SandStar

DPC-Crew

Zandster

Topicstarter
probleem is dat ik op de NT4 bak niet lukraak proggies kan gaan installen :(
Ik heb er wel admin rechten op maar die raak ik op die manier anders snel kwijt ben ik bang.

Mijn netwerkkennis is welliswaar beperkt maar ik dacht dat het via een socks proxy toch mogelijk moest zijn.
Ik heb al alle updates voor MS proxy 2.0 geinstalleerd en ook een hele riks aan instellingen gevonden (soort rules) voor de socks proxy.

Maar zelfs als ik zeg dat alle inbound en outbound tcp/ip data moet worden doorgelaten heeft dit geen effect.

Als ik om de proxy heen kan werken vind ik dit natuurlijk ook prachtig :)

  • Jimbolino
  • Registratie: Januari 2001
  • Laatst online: 08-08 23:37

Jimbolino

troep.com

proxy client op je client(s) zetten

The two basic principles of Windows system administration:
For minor problems, reboot
For major problems, reinstall


  • SandStar
  • Registratie: Oktober 2002
  • Laatst online: 16-08 15:50

SandStar

DPC-Crew

Zandster

Topicstarter
Geprobeerd.
Geen effect :(

Verwijderd

Smiley gebruikt Google.

The following is from the Syngress|Osborne IIS/Proxy/IEAK Study Guide page 600-603

Proxy Server can provide both dynamic and static packet filtering modes. These modes control which protocol ports are opened for communication. With dynamic packet filtering, you do not need to specifically unbind individual services from the external network adapter. Ports are opened for either transmit, receive, or both operations. Ports are then immediately closed after any of the Proxy Server services terminates a connection.

For a finer level of control and maximum security, you can manually configure static packet filters (also known as persistent packet filters) through the user interface. For a finer level of control and maximum security, you can configure static packet filters through the ISM.

The list of packet types applies to all requests issued to the server, regardless of whether the request originated from the Internet or from an intranet client. You cannot specify packet filtering on a user basis, although different Proxy Servers on your network can offer access to different protocols and ports for different users. You can use ISAPI to implement additional custom filters that might provide for a user filter.
When you select the Security button from the Services tab, you can enable packet filtering. Select Enable packet filtering on external interface box. The box next to Enable dynamic packet filtering of Microsoft Proxy Server packets is checked by default when you enable packet filtering. Unchecking this box gives you greater control of the ports being used in external communication. But it also increases the potential for configuration errors. Microsoft recommends that if packet filtering is enabled, dynamic filtering should also be enabled.
Selecting the box next to Enable filtering of IP fragments allows you to filter datagrams or IP fragments. The MCSE study guide, Microsoft TCP/IP on Windows NT 4.0 (Osborne McGraw-Hill), describes datagrams and fragments.

The Exceptions box in the dialog box lists the packet types that will be allowed. All others will be rejected. To add additional packet types to be allowed, click the Add button. Select from a list of predefined filters or you can create custom filters.

There are predefined filters for:

DNS lookup
ICMP all outbound
ICMP ping response
ICMP ping query
ICMP src quench
ICMP timeout
ICMP unreachable
PPTP call
PPTP receive
SMTP
POP3
Identd
HTTP server (port80)
HTTPS server (port 443)
NetBIOS (WINS client only)
NetBIOS (all)
Pagina: 1