端口被 ISP 过滤。
问题是无法从 Internet 访问 HTTPS 443 端口,但它在我们的本地网络中是开放的。我们的 iSeries v5r4 通过没有 IPSec 的 L2TP 连接到 inet。如果没有数据包过滤器处于活动状态,nmap 会显示端口 25、80、110 甚至 10322(WAS 管理控制台)在 Internet IP 地址上处于“打开”状态。443 已“过滤”状态。
如果我激活以下数据包规则:
# -----------------------------------------------
# Statements to permit inbound HTTP over STATICIP
# -----------------------------------------------
INCLUDE FILE = /QIBM/UserData/OS400/TCPIP/PacketRules/Services.i3p
FILTER SET HTTP_INBOUND ACTION = PERMIT DIRECTION = OUTBOUND SRCADDR = * DSTADDR = * SERVICE = HTTP_80_FS JRN = OFF
FILTER SET HTTP_INBOUND ACTION = PERMIT DIRECTION = INBOUND SRCADDR = * DSTADDR = * SERVICE = HTTP_80_FC JRN = OFF
FILTER SET HTTP_INBOUND ACTION = PERMIT DIRECTION = OUTBOUND SRCADDR = * DSTADDR = * SERVICE = HTTP_443_FS JRN = OFF
FILTER SET HTTP_INBOUND ACTION = PERMIT DIRECTION = INBOUND SRCADDR = * DSTADDR = * SERVICE = HTTP_443_FC JRN = OFF
FILTER_INTERFACE INTERFACE = STATICIP SET = HTTP_INBOUND
# -----------------------------------------------
端口 80 是“开放的”,443 是“过滤的”。
我怎样才能让它“开放”?