*** Please stop by the new home page for new and updated content. *** |
|
Dealing with the firewall
Now we have several steps to take to make sure we can Samba to and from your Suse box through the firewall.
Open YaST. Click on Security and Users > Firewall.
In the Start-Up section ensure the Start Firewall When Booting option is checked.
Click on the Allowed Services tab. Under Service to Allow choose Samba Server then click Add. When finished click Next and the Accept. When finished go back to the Start-Up section and click Save Settings and Restart Firewall Now.
Now go back to YaST. Go to System > /etc/sysconfig Editor.
Go to the following section: Network > Firewall > SuSEfirewall2.
Scroll down to FW_SERVICES_EXT_TCP. If everything went right in the preceding section it should look like the screen below. If not then add the following in the Setting of: FW_SERVICES_EXT_TCP box: microsoft-ds netbios-dgm netbios-ns netbios-ssn
Next go to FW_SERVICES_EXT_UDP (directly below the last one). In the box Setting of: FW_SERVICES_EXT_UDP ensure that netbios-ns is there. If not then add it. When done click Finish.
Next go to FW_ALLOW_INCOMING_HIGHPORTS_TCP ( a little further down the list than the last entry). In the box Setting of: FW_ALLOW_INCOMING_HIGHPORTS_TCP enter microsoft-ds netbios-ns.
Next go to FW_ALLOW_INCOMING_HIGHPORTS_UDP ( next line down ). In the box Setting of: FW_ALLOW_INCOMING_HIGHPORTS_UDP enter microsoft-ds netbios-ns.
One more! Go to FW_ALLOW_FW_BROADCAST_EXT ( a little further down the list than the last entry). In the box Setting of: FW_ALLOW_FW_BROADCAST_EXT you have 2 options, you can enter yes or netbios-ns netbios-dgm . Click Finish.
Now the Services are set up and the holes are punched through the firewall. However, now we need to add the ability to access the Windows boxes through the firewall. To do this we'll need to tell Suse how to find them. Computers generally use numbers for things not names (especially for networking). Humans on the other hand prefer names. We'll tell Suse the name of the Windows machines and then give it the address so it can find it.
Open YaST > Network Services > Host Names.
In the resulting windows click Add.
Now, depending on your network you can do 1of 2 things.
First try this: Enter the IP Address Range and Host Name of the Windows workgroup and click OK (see page one of this guide if you don't know that info). Your networks IP Address Range should be either 10.10.10.0 or 192.168.0.0.
Reboot, at this point you should be able to browse your Windows network with the firewall enabled.
You should now be able to use Konqueror using the following syntax: smb://windowsworkgroupname
If not try the next step.
Enter the IP Address and Host Name of the Windows box and click OK (see page one of this guide if you don't know that info). When you've added all the Windows machines click Finish.
You should now be able to use Konqueror using the following syntax: smb://windowsboxhostname
|
|
TweakHound - Optimize Your Computing Experience!
|