... but everywhere he is in ipchains
Mar. 7th, 2005 10:13 pm![[personal profile]](https://www.dreamwidth.org/img/silk/identity/user.png)
Right. I'm trying to set up my iSight, and it's not working, and this suggests that our home-brewed firewall is the crux of the problem:
TIA...
To use iChat AV behind a firewall, make sure your network administrator has opened UDP port 5060.So anyway, my network administrator is tired & stressed and says port forwarding is complicated. I have bashed my head against the ipchains man page to no avail. Anybody have any hints (or lines I can cut and paste into our firewall)?
When video conferencing, iChat AV uses four UDP ports in this range: 16384 to 16403.
TIA...
no subject
Date: 2005-03-07 10:31 pm (UTC)/sbin/ipchains --list
- C.
no subject
Date: 2005-03-07 11:29 pm (UTC)Assuming your firewall machine is not the same machine that you want to run the chat software on, I believe the command ipmasqadm portfw is involved and I've found a little bit (http://www.ox.compsoc.org.uk/~steve/portfw-2.2.html) of stuff about it.
no subject
Date: 2005-03-08 12:11 am (UTC)- The public IP address on your internet connection.
- The IP address of the Mac with the iSight on.
And then do once for each port number (5060 and from 16384 to 16403):
ipmasqadm portfw -a -P udp -L -R
no subject
Date: 2005-03-08 12:14 am (UTC)ipmasqadm portfw -a -P udp -L <public IP> <port> -R <mac IP>
no subject
Date: 2005-03-08 01:21 pm (UTC)no subject
Date: 2005-03-08 07:50 pm (UTC)portfw: illegal destination specified
Um... any suggestions?
no subject
Date: 2005-03-08 08:02 pm (UTC)Thanks for your help anyway, hopefully we'll be able to use your magic runes when the, um, *waves hands* innards are sorted out. :-)
no subject
Date: 2005-03-09 01:44 am (UTC)iptables -t nat -A PREROUTING -p udp --dport 5060 -d 213.104.13.73 -j DNAT --to-destination 172.19.244.11
Also, IJLTS badgers again for no particular reason.
BADGERS.
no subject
Date: 2005-03-09 12:44 pm (UTC)no subject
Date: 2005-03-07 11:57 pm (UTC)no subject
Date: 2005-03-08 01:00 am (UTC)no subject
Date: 2005-03-08 01:22 pm (UTC)no subject
Date: 2005-03-08 01:59 pm (UTC)no subject
Date: 2005-03-08 03:04 pm (UTC)no subject
Date: 2005-03-08 03:31 pm (UTC)no subject
Date: 2005-03-08 08:02 pm (UTC)no subject
Date: 2005-03-09 01:08 am (UTC)Also worth looking at this (http://docs.info.apple.com/article.html?artnum=93208) which lists the main ports to do with the iChat protocols and has a couple of links to the nitty gritty stuff.
no subject
Date: 2005-03-09 10:23 am (UTC)no subject
Date: 2005-03-09 11:08 am (UTC)no subject
Date: 2005-03-09 11:42 am (UTC)