Prechádzať zdrojové kódy

kvmhost02: allow sieve-ssl access from web01

Maximilian Ronniger 2 rokov pred
rodič
commit
5f2f95c06b
1 zmenil súbory, kde vykonal 5 pridanie a 4 odobranie
  1. 5 4
      itguru.at.fwb

+ 5 - 4
itguru.at.fwb

@@ -1,6 +1,6 @@
 <?xml version="1.0" encoding="utf-8"?>
 <!DOCTYPE FWObjectDatabase SYSTEM "fwbuilder.dtd">
-<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="24" lastModified="1699791329" id="root">
+<FWObjectDatabase xmlns="http://www.fwbuilder.org/1.0/" version="24" lastModified="1700572010" id="root">
   <Library id="syslib000" color="#d4f8ff" name="Standard" comment="Standard objects" ro="True">
     <AnyNetwork id="sysid0" name="Any" comment="Any Network" ro="False" address="0.0.0.0" netmask="0.0.0.0"/>
     <AnyIPService id="sysid1" protocol_num="0" name="Any" comment="Any IP Service" ro="False"/>
@@ -2483,6 +2483,7 @@
         <TCPService id="id13561X27833" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="Sieve" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4190" dst_range_end="4190"/>
         <TCPService id="id13791X40508" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet video" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4443" dst_range_end="4443"/>
         <TCPService id="id13852X7211" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="jitsi-meet https" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4444" dst_range_end="4444"/>
+        <TCPService id="id14253X257812" ack_flag="False" ack_flag_mask="False" established="False" fin_flag="False" fin_flag_mask="False" psh_flag="False" psh_flag_mask="False" rst_flag="False" rst_flag_mask="False" syn_flag="False" syn_flag_mask="False" urg_flag="False" urg_flag_mask="False" name="Sieve-ssl" comment="" ro="False" src_range_start="0" src_range_end="0" dst_range_start="4191" dst_range_end="4191"/>
       </ServiceGroup>
       <ServiceGroup id="id1596X5690" name="UDP" comment="" ro="False">
         <UDPService id="id4342X8596" name="openvpn source" comment="" ro="False" src_range_start="1194" src_range_end="1194" dst_range_start="0" dst_range_end="0"/>
@@ -2495,7 +2496,7 @@
       <ServiceGroup id="id1599X5690" name="TagServices" comment="" ro="False"/>
     </ServiceGroup>
     <ObjectGroup id="id1600X5690" name="Firewalls" comment="" ro="False">
-      <Firewall id="id8899X28426" host_OS="linux24" inactive="False" lastCompiled="1699791574" lastInstalled="1699791597" lastModified="1699791563" platform="iptables" version="1.4.20" name="kvmhost02" comment="" ro="False">
+      <Firewall id="id8899X28426" host_OS="linux24" inactive="False" lastCompiled="1700572034" lastInstalled="1700572082" lastModified="1700572026" platform="iptables" version="1.4.20" name="kvmhost02" comment="" ro="False">
         <NAT id="id13393X65696" name="NAT" comment="" ro="False" ipv4_rule_set="True" ipv6_rule_set="False" top_rule_set="True">
           <NATRule id="id13395X65696" disabled="False" group="outgoing NAT" position="0" action="Translate" comment="NAT all outgoing mail traffic to mail IP">
             <OSrc neg="False">
@@ -3481,7 +3482,7 @@
               <Option name="stateless">False</Option>
             </PolicyRuleOptions>
           </PolicyRule>
-          <PolicyRule id="id13633X27833" disabled="True" group="VMs" log="True" position="13" action="Accept" direction="Both" comment="allow sieve access">
+          <PolicyRule id="id13633X27833" disabled="False" group="VMs" log="True" position="13" action="Accept" direction="Both" comment="allow sieve access">
             <Src neg="False">
               <ObjectRef ref="id6626X5690"/>
             </Src>
@@ -3489,7 +3490,7 @@
               <ObjectRef ref="id8526X5690"/>
             </Dst>
             <Srv neg="False">
-              <ServiceRef ref="id13561X27833"/>
+              <ServiceRef ref="id14253X257812"/>
             </Srv>
             <Itf neg="False">
               <ObjectRef ref="sysid0"/>