<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Filtrados &#8211; RAGASYS SISTEMAS</title>
	<atom:link href="https://blog.ragasys.es/category/filtrados/feed" rel="self" type="application/rss+xml" />
	<link>https://blog.ragasys.es</link>
	<description>Soporte técnico para las TIC</description>
	<lastBuildDate>Mon, 05 Jun 2023 16:25:17 +0000</lastBuildDate>
	<language>es</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/05/logoRGS_18_05_2020.png?fit=32%2C32&#038;ssl=1</url>
	<title>Filtrados &#8211; RAGASYS SISTEMAS</title>
	<link>https://blog.ragasys.es</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">111701399</site>	<item>
		<title>Configuración Firewall con nftables</title>
		<link>https://blog.ragasys.es/configuracion-firewall-con-nftables</link>
					<comments>https://blog.ragasys.es/configuracion-firewall-con-nftables#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 05 Jun 2023 16:25:17 +0000</pubDate>
				<category><![CDATA[Filtrados]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[nftables]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16214</guid>

					<description><![CDATA[Hola a tod@s, en este post vamos a ver ejemplos de como configurar un firewall con nftables, el esquema de la infraestructura montada sería el siguiente: Antes de empezar debemos de ejecutar sobre la máquina cortafuegos los siguientes comandos: apt-get&#8230; <a href="https://blog.ragasys.es/configuracion-firewall-con-nftables" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s, en este post vamos a ver ejemplos de como configurar un firewall con nftables, el esquema de la infraestructura montada sería el siguiente:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?ssl=1" data-lbwps-width="747" data-lbwps-height="315" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16215" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?fit=747%2C315&amp;ssl=1" data-orig-size="747,315" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?fit=640%2C270&amp;ssl=1" class="aligncenter size-full wp-image-16215" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?resize=640%2C270&#038;ssl=1" alt="" width="640" height="270" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?w=747&amp;ssl=1 747w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_1.png?resize=595%2C251&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Antes de empezar debemos de ejecutar sobre la máquina cortafuegos los siguientes comandos:</p>
<p><strong>apt-get update</strong> para actualizar</p>
<p><strong>apt-get install nftables </strong>para instalar</p>
<p><strong>systemctl start nftables.service </strong>para iniciar el servicio</p>
<p><strong>systemctl status nftables.service </strong>para ver el estado del servicio</p>
<ul>
<li>Vamos a crear una tabla llamada accesojramos, en la máquina <strong>cortafuegos</strong> vamos a añadir la tabla indicando, <strong>nft add table inet accesojramos</strong> con <strong>nft list tables</strong> podemos ver el listado de tablas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?ssl=1" data-lbwps-width="810" data-lbwps-height="205" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16216" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?fit=810%2C205&amp;ssl=1" data-orig-size="810,205" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?fit=640%2C162&amp;ssl=1" class="aligncenter size-full wp-image-16216" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?resize=640%2C162&#038;ssl=1" alt="" width="640" height="162" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?w=810&amp;ssl=1 810w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?resize=595%2C151&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_2.png?resize=768%2C194&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vamos a crear dos cadenas en los hook input y output con política accept por defecto</li>
<li>En la máquina <strong>cortafuegos</strong> vamos a añadir las dos cadenas en los hook input y output con política accept por defecto, para ello, introducimos para la entrada <strong>nft add chain inet accesojramos entrada { type filter hook input priority 0 \; policy accept \;}</strong> y para la salida <strong>nft add chain inet accesojramos salida { type filter hook output priority 0 \; policy accept \;}</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?ssl=1" data-lbwps-width="835" data-lbwps-height="281" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16217" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?fit=835%2C281&amp;ssl=1" data-orig-size="835,281" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-16217" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?resize=640%2C215&#038;ssl=1" alt="" width="640" height="215" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?w=835&amp;ssl=1 835w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?resize=595%2C200&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_3.png?resize=768%2C258&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con <strong>nft list table inet accesojramos</strong> podemos ver la tabla con su contenido:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?ssl=1" data-lbwps-width="817" data-lbwps-height="315" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16218" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?fit=817%2C315&amp;ssl=1" data-orig-size="817,315" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?fit=640%2C247&amp;ssl=1" class="aligncenter size-full wp-image-16218" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?resize=640%2C247&#038;ssl=1" alt="" width="640" height="247" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?w=817&amp;ssl=1 817w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?resize=595%2C229&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_4.png?resize=768%2C296&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración y reiniciamos el servicio, <strong>nft list ruleset &gt; /etc/nftables.conf</strong> y <strong>systemctl restart nftables.service</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?ssl=1" data-lbwps-width="804" data-lbwps-height="147" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16219" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?fit=804%2C147&amp;ssl=1" data-orig-size="804,147" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-16219" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?w=804&amp;ssl=1 804w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=768%2C140&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Bloquear en la entrada el acceso al servidor FTP desde el Cortafuegos</li>
<li>En la máquina cortafuegos introducimos, <strong>nft add rule inet accesojramos entrada ip daddr 10.0.0.10 tcp dport 21 counter reject</strong> y con <strong>nft list table inet accesojramos</strong> podemos ver la tabla con su contenido:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?ssl=1" data-lbwps-width="843" data-lbwps-height="355" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16220" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?fit=843%2C355&amp;ssl=1" data-orig-size="843,355" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?fit=640%2C270&amp;ssl=1" class="aligncenter size-full wp-image-16220" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?resize=640%2C270&#038;ssl=1" alt="" width="640" height="270" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?w=843&amp;ssl=1 843w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?resize=595%2C251&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_6.png?resize=768%2C323&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración y reiniciamos el servicio, <strong>nft list ruleset &gt; /etc/nftables.conf</strong> y <strong>systemctl restart nftables.service</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?ssl=1" data-lbwps-width="804" data-lbwps-height="147" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16219" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?fit=804%2C147&amp;ssl=1" data-orig-size="804,147" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-16219" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?w=804&amp;ssl=1 804w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_5.png?resize=768%2C140&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Bloquear en la salida el ping con cualquier IP destino u origen</li>
<li>En la máquina cortafuegos introducimos, <strong>nft add rule inet accesojramos salida ip protocol icmp drop</strong> y con <strong>nft list table inet accesojramos</strong> podemos ver la tabla con su contenido:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?ssl=1" data-lbwps-width="811" data-lbwps-height="464" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16222" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?fit=811%2C464&amp;ssl=1" data-orig-size="811,464" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?fit=640%2C366&amp;ssl=1" class="aligncenter size-full wp-image-16222" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?resize=640%2C366&#038;ssl=1" alt="" width="640" height="366" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?w=811&amp;ssl=1 811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?resize=595%2C340&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_8.png?resize=768%2C439&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración y reiniciamos el servicio, <strong>nft list ruleset &gt; /etc/nftables.conf</strong> y <strong>systemctl restart nftables.service</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?ssl=1" data-lbwps-width="804" data-lbwps-height="147" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16223" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?fit=804%2C147&amp;ssl=1" data-orig-size="804,147" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-16223" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?w=804&amp;ssl=1 804w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_9.png?resize=768%2C140&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora si desde la máquina <strong>servidor</strong> intentamos hacer un ping a la máquina <strong>cortafuegos</strong>, podemos ver que no funciona:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?ssl=1" data-lbwps-width="822" data-lbwps-height="223" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16224" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?fit=822%2C223&amp;ssl=1" data-orig-size="822,223" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?fit=640%2C174&amp;ssl=1" class="aligncenter size-full wp-image-16224" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?resize=640%2C174&#038;ssl=1" alt="" width="640" height="174" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?w=822&amp;ssl=1 822w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?resize=595%2C161&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_10.png?resize=768%2C208&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Mostramos toda la configuración indicando el código de cada línea</li>
<li>Con <strong>nft list table inet accesojramos</strong> podemos ver toda la configuración realizada y el código de cada línea:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?ssl=1" data-lbwps-width="815" data-lbwps-height="340" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16225" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-nftables/cfcnftables_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?fit=815%2C340&amp;ssl=1" data-orig-size="815,340" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfcnftables_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?fit=640%2C267&amp;ssl=1" class="aligncenter size-full wp-image-16225" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?resize=640%2C267&#038;ssl=1" alt="" width="640" height="267" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?w=815&amp;ssl=1 815w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?resize=595%2C248&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfcnftables_11.png?resize=768%2C320&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-firewall-con-nftables/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16214</post-id>	</item>
		<item>
		<title>Configuración Firewall con iptables</title>
		<link>https://blog.ragasys.es/configuracion-firewall-con-iptables</link>
					<comments>https://blog.ragasys.es/configuracion-firewall-con-iptables#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 29 May 2023 17:32:08 +0000</pubDate>
				<category><![CDATA[Filtrados]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[iptables]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[netwo]]></category>
		<category><![CDATA[Seguridad]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=16180</guid>

					<description><![CDATA[Hola a tod@s, en este post vamos a ver ejemplos de como configurar un firewall con iptables, el esquema de la infraestructura montada sería el siguiente: En nuestra infraestructura de virtualización VMware, hemos desplegado estas dos máquinas, una llamada cortafuegos&#8230; <a href="https://blog.ragasys.es/configuracion-firewall-con-iptables" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s, en este post vamos a ver ejemplos de como configurar un firewall con iptables, el esquema de la infraestructura montada sería el siguiente:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?ssl=1" data-lbwps-width="747" data-lbwps-height="315" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16181" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?fit=747%2C315&amp;ssl=1" data-orig-size="747,315" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?fit=640%2C270&amp;ssl=1" class="aligncenter size-full wp-image-16181" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?resize=640%2C270&#038;ssl=1" alt="" width="640" height="270" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?w=747&amp;ssl=1 747w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_1.png?resize=595%2C251&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestra infraestructura de virtualización VMware, hemos desplegado estas dos máquinas, una llamada <strong>cortafuegos </strong>y otra <strong>servidor</strong> con las configuraciones de red indicadas en la actividad, la máquina <strong>cortafuegos</strong> es un Ubuntu Server 20.04 sin interfaz gráfica y la máquina <strong>servidor</strong> es un Ubuntu Server 20.04 con interfaz gráfica:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?ssl=1" data-lbwps-width="1101" data-lbwps-height="758" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16182" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?fit=1101%2C758&amp;ssl=1" data-orig-size="1101,758" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?fit=640%2C441&amp;ssl=1" class="aligncenter size-full wp-image-16182" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?resize=640%2C441&#038;ssl=1" alt="" width="640" height="441" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?w=1101&amp;ssl=1 1101w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?resize=595%2C410&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?resize=960%2C661&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_2.png?resize=768%2C529&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?ssl=1" data-lbwps-width="1105" data-lbwps-height="764" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16183" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?fit=1105%2C764&amp;ssl=1" data-orig-size="1105,764" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?fit=640%2C443&amp;ssl=1" class="aligncenter size-full wp-image-16183" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?resize=640%2C442&#038;ssl=1" alt="" width="640" height="442" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?w=1105&amp;ssl=1 1105w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?resize=595%2C411&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?resize=960%2C664&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_3.png?resize=768%2C531&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La configuración de red para la máquina<strong> cortafuegos</strong> es la siguiente, hemos renombrado las interfaces de red para tenerlo todo más claro (WAN y LAN):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?ssl=1" data-lbwps-width="806" data-lbwps-height="231" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16184" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?fit=806%2C231&amp;ssl=1" data-orig-size="806,231" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?fit=640%2C183&amp;ssl=1" class="aligncenter size-full wp-image-16184" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?resize=640%2C183&#038;ssl=1" alt="" width="640" height="183" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?w=806&amp;ssl=1 806w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?resize=595%2C171&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_4.png?resize=768%2C220&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?ssl=1" data-lbwps-width="811" data-lbwps-height="484" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16185" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?fit=811%2C484&amp;ssl=1" data-orig-size="811,484" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?fit=640%2C382&amp;ssl=1" class="aligncenter size-full wp-image-16185" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?resize=640%2C382&#038;ssl=1" alt="" width="640" height="382" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?w=811&amp;ssl=1 811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?resize=595%2C355&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_5.png?resize=768%2C458&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?ssl=1" data-lbwps-width="823" data-lbwps-height="443" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16186" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?fit=823%2C443&amp;ssl=1" data-orig-size="823,443" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?fit=640%2C344&amp;ssl=1" class="aligncenter size-full wp-image-16186" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?resize=640%2C344&#038;ssl=1" alt="" width="640" height="344" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?w=823&amp;ssl=1 823w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?resize=595%2C320&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_6.png?resize=768%2C413&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La configuración de red para la máquina<strong> servidor</strong> es:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?ssl=1" data-lbwps-width="806" data-lbwps-height="403" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16187" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?fit=806%2C403&amp;ssl=1" data-orig-size="806,403" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?fit=640%2C320&amp;ssl=1" class="aligncenter size-full wp-image-16187" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?resize=640%2C320&#038;ssl=1" alt="" width="640" height="320" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?w=806&amp;ssl=1 806w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?resize=595%2C298&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_7.png?resize=768%2C384&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?ssl=1" data-lbwps-width="808" data-lbwps-height="324" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16188" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?fit=808%2C324&amp;ssl=1" data-orig-size="808,324" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?fit=640%2C257&amp;ssl=1" class="aligncenter size-full wp-image-16188" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?resize=640%2C257&#038;ssl=1" alt="" width="640" height="257" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?w=808&amp;ssl=1 808w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?resize=595%2C239&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_8.png?resize=768%2C308&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina <strong>servidor</strong> podemos ver, que la ruta por defecto, sale a través de la máquina <strong>cortafuegos (10.0.0.1)</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?ssl=1" data-lbwps-width="817" data-lbwps-height="241" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16189" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?fit=817%2C241&amp;ssl=1" data-orig-size="817,241" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?fit=640%2C189&amp;ssl=1" class="aligncenter size-full wp-image-16189" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?resize=640%2C189&#038;ssl=1" alt="" width="640" height="189" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?w=817&amp;ssl=1 817w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?resize=595%2C176&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_9.png?resize=768%2C227&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a realizar las siguientes tareas con el cortafuegos configurando <strong>iptables.</strong></li>
<li><strong>Preparar el Cortafuegos para que haga NAT compartiendo la IP de la interface WAN:</strong></li>
<li>Lo primero que vamos a realizar es que la máquina <strong>cortafuegos</strong> deje pasar el tráfico entre la red externa (WAN) y la red interna (LAN), para ello, editamos el fichero <strong>/etc/sysctl.conf</strong> y descomentamos la línea <strong>net.ipv4.ip_forward=1:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?ssl=1" data-lbwps-width="814" data-lbwps-height="668" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16190" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?fit=814%2C668&amp;ssl=1" data-orig-size="814,668" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?fit=640%2C525&amp;ssl=1" class="aligncenter size-full wp-image-16190" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?resize=640%2C525&#038;ssl=1" alt="" width="640" height="525" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?w=814&amp;ssl=1 814w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?resize=595%2C488&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_10.png?resize=768%2C630&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejecutamos <strong>sysctl -p /etc/sysctl.conf</strong> para que los cambios tengan efecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?ssl=1" data-lbwps-width="811" data-lbwps-height="181" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16191" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?fit=811%2C181&amp;ssl=1" data-orig-size="811,181" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-16191" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?resize=640%2C143&#038;ssl=1" alt="" width="640" height="143" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?w=811&amp;ssl=1 811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?resize=595%2C133&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_11.png?resize=768%2C171&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina <strong>cortafuegos </strong>configuramos la siguiente regla, para que haga NAT compartiendo la IP dinámica de la interface WAN <strong>iptables -t nat -A POSTROUTING -o WAN -j MASQUERADE:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?ssl=1" data-lbwps-width="805" data-lbwps-height="185" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16192" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?fit=805%2C185&amp;ssl=1" data-orig-size="805,185" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-16192" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?resize=640%2C147&#038;ssl=1" alt="" width="640" height="147" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?w=805&amp;ssl=1 805w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?resize=595%2C137&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_12.png?resize=768%2C176&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez configurada la máquina <strong>cortafuegos</strong>, vamos a realizar la prueba desde la máquina <strong>servidor</strong>, y verificar que podemos navegar hacia suarezdefigueroa.es:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?ssl=1" data-lbwps-width="813" data-lbwps-height="672" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16193" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?fit=813%2C672&amp;ssl=1" data-orig-size="813,672" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?fit=640%2C529&amp;ssl=1" class="aligncenter size-full wp-image-16193" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?resize=640%2C529&#038;ssl=1" alt="" width="640" height="529" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?w=813&amp;ssl=1 813w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?resize=595%2C492&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_13.png?resize=768%2C635&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración, para que al reiniciar el sistema se carguen las iptables que hemos diseñado:</li>
</ul>
<p><strong>apt-get install iptables-persistent</strong></p>
<p><strong>iptables-save &gt; /etc/iptables/rules.v4</strong></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?ssl=1" data-lbwps-width="806" data-lbwps-height="285" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16194" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?fit=806%2C285&amp;ssl=1" data-orig-size="806,285" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?fit=640%2C226&amp;ssl=1" class="aligncenter size-full wp-image-16194" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?resize=640%2C226&#038;ssl=1" alt="" width="640" height="226" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?w=806&amp;ssl=1 806w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?resize=595%2C210&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_14.png?resize=768%2C272&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?ssl=1" data-lbwps-width="809" data-lbwps-height="158" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16195" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?fit=809%2C158&amp;ssl=1" data-orig-size="809,158" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?fit=640%2C125&amp;ssl=1" class="aligncenter size-full wp-image-16195" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?resize=640%2C125&#038;ssl=1" alt="" width="640" height="125" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?resize=595%2C116&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_15.png?resize=768%2C150&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li><strong>Abrir los puertos 80 (instalar apache en Servidor) y 21 (instalar vsftpd en Servidor) hacia el servidor:</strong></li>
<li>Sobre la máquina <strong>servidor</strong> instalamos el servidor web apache:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?ssl=1" data-lbwps-width="808" data-lbwps-height="399" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16196" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?fit=808%2C399&amp;ssl=1" data-orig-size="808,399" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?fit=640%2C316&amp;ssl=1" class="aligncenter size-full wp-image-16196" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?resize=640%2C316&#038;ssl=1" alt="" width="640" height="316" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?w=808&amp;ssl=1 808w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?resize=595%2C294&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_16.png?resize=768%2C379&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre la máquina <strong>servidor</strong> instalamos el servidor FTP vsftpd:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?ssl=1" data-lbwps-width="809" data-lbwps-height="495" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16197" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?fit=809%2C495&amp;ssl=1" data-orig-size="809,495" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?fit=640%2C392&amp;ssl=1" class="aligncenter size-full wp-image-16197" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?resize=640%2C392&#038;ssl=1" alt="" width="640" height="392" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?resize=595%2C364&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_17.png?resize=768%2C470&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en la máquina <strong>cortafuegos</strong> vamos a configurar la regla con iptables para abrir el puerto 80 hacia el <strong>servidor</strong>, para ello, introducimos <strong>iptables -t nat -A PREROUTING -p tcp &#8211;dport 80 -i WAN -j DNAT &#8211;to 10.0.0.10:80</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?ssl=1" data-lbwps-width="811" data-lbwps-height="187" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16198" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?fit=811%2C187&amp;ssl=1" data-orig-size="811,187" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?fit=640%2C148&amp;ssl=1" class="aligncenter size-full wp-image-16198" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?resize=640%2C148&#038;ssl=1" alt="" width="640" height="148" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?w=811&amp;ssl=1 811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?resize=595%2C137&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_18.png?resize=768%2C177&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la máquina <strong>cortafuegos</strong> vamos a configurar la regla con iptables para abrir el puerto 21 hacia el <strong>servidor</strong>, para ello, introducimos <strong>iptables -t nat -A PREROUTING -p tcp &#8211;dport 21 -i WAN -j DNAT &#8211;to 10.0.0.10:21:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?ssl=1" data-lbwps-width="813" data-lbwps-height="180" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16199" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?fit=813%2C180&amp;ssl=1" data-orig-size="813,180" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?fit=640%2C142&amp;ssl=1" class="aligncenter size-full wp-image-16199" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?resize=640%2C142&#038;ssl=1" alt="" width="640" height="142" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?w=813&amp;ssl=1 813w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?resize=595%2C132&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_19.png?resize=768%2C170&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración, para que al reiniciar el sistema se carguen las iptables que hemos diseñado:</li>
</ul>
<p><strong>iptables-save &gt; /etc/iptables/rules.v4</strong></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?ssl=1" data-lbwps-width="809" data-lbwps-height="157" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16200" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?fit=809%2C157&amp;ssl=1" data-orig-size="809,157" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?fit=640%2C124&amp;ssl=1" class="aligncenter size-full wp-image-16200" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?resize=640%2C124&#038;ssl=1" alt="" width="640" height="124" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?resize=595%2C115&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_20.png?resize=768%2C149&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora que hemos configurado las reglas con iptables, nos vamos a conectar al puerto 80 de la interface WAN de la máquina <strong>cortafuegos</strong> (192.168.14.101, ip servida por DHCP al cortafuegos) y como podemos ver, nos dirige al apache instalado en la máquina <strong>servidor</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?ssl=1" data-lbwps-width="1359" data-lbwps-height="1049" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16201" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?fit=1359%2C1049&amp;ssl=1" data-orig-size="1359,1049" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?fit=640%2C494&amp;ssl=1" class="aligncenter size-full wp-image-16201" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?resize=640%2C494&#038;ssl=1" alt="" width="640" height="494" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?w=1359&amp;ssl=1 1359w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?resize=595%2C459&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?resize=960%2C741&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?resize=768%2C593&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_21.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos conectamos ahora al puerto 21 de la interface WAN de la máquina <strong>cortafuegos</strong> (192.168.14.101, ip servida por DHCP al cortafuegos) y como podemos ver, nos dirige al FTP instalado en la máquina <strong>servidor</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?ssl=1" data-lbwps-width="1146" data-lbwps-height="530" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16202" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?fit=1146%2C530&amp;ssl=1" data-orig-size="1146,530" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?fit=640%2C296&amp;ssl=1" class="aligncenter size-full wp-image-16202" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?resize=640%2C296&#038;ssl=1" alt="" width="640" height="296" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?w=1146&amp;ssl=1 1146w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?resize=595%2C275&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?resize=960%2C444&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_22.png?resize=768%2C355&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?ssl=1" data-lbwps-width="994" data-lbwps-height="332" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16203" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?fit=994%2C332&amp;ssl=1" data-orig-size="994,332" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?fit=640%2C214&amp;ssl=1" class="aligncenter size-full wp-image-16203" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?resize=640%2C214&#038;ssl=1" alt="" width="640" height="214" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?w=994&amp;ssl=1 994w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?resize=595%2C199&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?resize=960%2C321&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_23.png?resize=768%2C257&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li><strong>Permitir el acceso por SSH al cortafuegos cuando NO provenga de la MAC 02:42:02:42:02:42</strong></li>
<li>En Ubuntu Server 20.04 LTS que es el sistema operativo de la máquina <strong>cortafuegos</strong> viene instalado por defecto openssh-server, como podemos ver aquí, accedemos sin problemas por SSH:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?ssl=1" data-lbwps-width="658" data-lbwps-height="676" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16204" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?fit=658%2C676&amp;ssl=1" data-orig-size="658,676" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?fit=640%2C658&amp;ssl=1" class="aligncenter size-full wp-image-16204" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?resize=640%2C658&#038;ssl=1" alt="" width="640" height="658" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?w=658&amp;ssl=1 658w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?resize=595%2C611&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_24.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en la máquina <strong>cortafuegos</strong> vamos a configurar la regla con iptables para no permitir el acceso por SSH cuando provenga de la MAC 02:42:02:42:02:42, para ello, introducimos <strong>iptables -A FORWARD -m mac &#8211;mac-source 02:42:02:42:02:42 -p tcp &#8211;dport 22 -j DROP</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?ssl=1" data-lbwps-width="821" data-lbwps-height="213" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16205" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?fit=821%2C213&amp;ssl=1" data-orig-size="821,213" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?fit=640%2C166&amp;ssl=1" class="aligncenter size-full wp-image-16205" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?resize=640%2C166&#038;ssl=1" alt="" width="640" height="166" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?w=821&amp;ssl=1 821w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?resize=595%2C154&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_25.png?resize=768%2C199&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración, para que al reiniciar el sistema se carguen las iptables que hemos diseñado:</li>
</ul>
<p><strong>iptables-save &gt; /etc/iptables/rules.v4</strong></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?ssl=1" data-lbwps-width="809" data-lbwps-height="157" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16206" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?fit=809%2C157&amp;ssl=1" data-orig-size="809,157" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?fit=640%2C124&amp;ssl=1" class="aligncenter size-full wp-image-16206" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?resize=640%2C124&#038;ssl=1" alt="" width="640" height="124" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?resize=595%2C115&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_26.png?resize=768%2C149&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li><strong>Bloquear el acceso desde el Servidor a la web suarezdefigueroa.es</strong></li>
<li>En la máquina <strong>cortafuegos</strong> vamos a configurar la regla con iptables para bloquear el acceso desde el servidor a la web suarezdefigueroa.es, para ello, introducimos<strong> iptables -t filter -A FORWARD -s 10.0.0.10 -d www.suarezdefigueroa.es -j DROP</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?ssl=1" data-lbwps-width="806" data-lbwps-height="154" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16207" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?fit=806%2C154&amp;ssl=1" data-orig-size="806,154" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?fit=640%2C122&amp;ssl=1" class="aligncenter size-full wp-image-16207" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?resize=640%2C122&#038;ssl=1" alt="" width="640" height="122" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?w=806&amp;ssl=1 806w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?resize=595%2C114&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_27.png?resize=768%2C147&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración, para que al reiniciar el sistema se carguen las iptables que hemos diseñado:</li>
</ul>
<p><strong>iptables-save &gt; /etc/iptables/rules.v4</strong></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?ssl=1" data-lbwps-width="809" data-lbwps-height="157" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16208" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?fit=809%2C157&amp;ssl=1" data-orig-size="809,157" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?fit=640%2C124&amp;ssl=1" class="aligncenter size-full wp-image-16208" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?resize=640%2C124&#038;ssl=1" alt="" width="640" height="124" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?resize=595%2C115&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_28.png?resize=768%2C149&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde la máquina servidor, podemos ver, que ya no se puede acceder a la web suarezdefigueroa.es:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?ssl=1" data-lbwps-width="813" data-lbwps-height="675" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16209" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?fit=813%2C675&amp;ssl=1" data-orig-size="813,675" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?fit=640%2C531&amp;ssl=1" class="aligncenter size-full wp-image-16209" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?resize=640%2C531&#038;ssl=1" alt="" width="640" height="531" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?w=813&amp;ssl=1 813w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?resize=595%2C494&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_29.png?resize=768%2C638&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li><strong>No permitir el ping con origen externo hacia el Servidor</strong></li>
<li>En la máquina <strong>cortafuegos</strong> vamos a configurar la regla con iptables para no permitir el ping con origen externo hacia el <strong>servidor</strong>, para ello, introducimos <strong>iptables -t filter -A OUTPUT -d 10.0.0.10 -p icmp -j DROP</strong>, luego le realizamos un ping desde la propia máquina <strong>cortafuegos</strong> al <strong>servidor</strong> y como vemos, la operación no está permitida:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?ssl=1" data-lbwps-width="808" data-lbwps-height="322" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16210" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?fit=808%2C322&amp;ssl=1" data-orig-size="808,322" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?fit=640%2C255&amp;ssl=1" class="aligncenter size-full wp-image-16210" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?resize=640%2C255&#038;ssl=1" alt="" width="640" height="255" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?w=808&amp;ssl=1 808w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?resize=595%2C237&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_30.png?resize=768%2C306&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para finalizar, guardamos la configuración, para que al reiniciar el sistema se carguen las iptables que hemos diseñado:</li>
</ul>
<p><strong>iptables-save &gt; /etc/iptables/rules.v4</strong></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?ssl=1" data-lbwps-width="809" data-lbwps-height="157" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="16211" data-permalink="https://blog.ragasys.es/configuracion-firewall-con-iptables/cfciptables_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?fit=809%2C157&amp;ssl=1" data-orig-size="809,157" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfciptables_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?fit=640%2C124&amp;ssl=1" class="aligncenter size-full wp-image-16211" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?resize=640%2C124&#038;ssl=1" alt="" width="640" height="124" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?w=809&amp;ssl=1 809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?resize=595%2C115&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/01/cfciptables_31.png?resize=768%2C149&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p><strong> </strong></p>
<p><strong> </strong></p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-firewall-con-iptables/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">16180</post-id>	</item>
		<item>
		<title>Administración del filtrado de archivos en File Server Windows</title>
		<link>https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows</link>
					<comments>https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 01 Jul 2019 07:38:28 +0000</pubDate>
				<category><![CDATA[Almacenamiento]]></category>
		<category><![CDATA[Filtrados]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Recursos Compartidos]]></category>
		<category><![CDATA[Servidor de ficheros]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Windows Server 2016]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9059</guid>

					<description><![CDATA[Hola a tod@s. En este post vamos a ver como administrar el filtrado de archivos de los recursos compartidos en nuestro file server, y poder así darle seguridad al almacenamiento de nuestra infraestructura para proteger nuestro servidor. Para ello, desde&#8230; <a href="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como administrar el filtrado de archivos de los recursos compartidos en nuestro file server, y poder así darle seguridad al almacenamiento de nuestra infraestructura para proteger nuestro servidor.</p>
<ul>
<li>Para ello, desde el <strong>Administrador del Servidor</strong> nos abrimos el <strong>Administrador de recursos del servidor de archivos</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png" data-lbwps-width="1361" data-lbwps-height="443" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9060" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?fit=1361%2C443&amp;ssl=1" data-orig-size="1361,443" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?fit=640%2C208&amp;ssl=1" class="aligncenter size-full wp-image-9060" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?resize=640%2C208" alt="" width="640" height="208" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?resize=595%2C194&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?resize=768%2C250&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?resize=960%2C312&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre la <strong>Administración del filtrado de archivos,</strong> lo primero que haremos será crearnos los <strong>Grupos de archivos</strong>, y como podemos ver tenemos una serie de grupos que vienen ya predefinidos, nosotros nos crearemos un grupo de archivos para los ejecutables .exe, cuando nos interese también podríamos excluir del grupo, los archivos .exe que necesitemos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png" data-lbwps-width="1360" data-lbwps-height="425" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9061" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?fit=1360%2C425&amp;ssl=1" data-orig-size="1360,425" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?fit=640%2C200&amp;ssl=1" class="aligncenter size-full wp-image-9061" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?resize=640%2C200" alt="" width="640" height="200" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?w=1360&amp;ssl=1 1360w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?resize=595%2C186&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?resize=768%2C240&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?resize=960%2C300&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png" data-lbwps-width="1361" data-lbwps-height="632" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9062" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?fit=1361%2C632&amp;ssl=1" data-orig-size="1361,632" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-9062" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?resize=640%2C297" alt="" width="640" height="297" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?resize=768%2C357&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?resize=960%2C446&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png" data-lbwps-width="1361" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9063" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?fit=1361%2C401&amp;ssl=1" data-orig-size="1361,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?fit=640%2C189&amp;ssl=1" class="aligncenter size-full wp-image-9063" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?resize=640%2C189" alt="" width="640" height="189" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?resize=768%2C226&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?resize=960%2C283&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crearnos las plantillas para el filtrado de archivos en los distintos recursos compartidos de nuestro File Server, en nuestro caso, vamos a bloquear los archivos de audio, video y .exe, en los tres recursos compartidos de nuestro servidor:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png" data-lbwps-width="1361" data-lbwps-height="249" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9064" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?fit=1361%2C249&amp;ssl=1" data-orig-size="1361,249" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-9064" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?resize=640%2C117" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?resize=595%2C109&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?resize=768%2C141&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?resize=960%2C176&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Empezaremos configurando la plantilla para el recurso compartido Publico, para ello, sobre la pestaña <strong>Configuración</strong> le damos un nombre a la plantilla, elegimos el tipo de filtrado, en este caso<strong>, Filtrado activo, </strong>y marcamos el check del grupo de archivos que nos interese, en nuestro caso, vamos a filtrar los archivos de audio, video y .exe:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png" data-lbwps-width="933" data-lbwps-height="663" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9065" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?fit=933%2C663&amp;ssl=1" data-orig-size="933,663" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?fit=640%2C455&amp;ssl=1" class="aligncenter size-full wp-image-9065" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?resize=640%2C455" alt="" width="640" height="455" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?w=933&amp;ssl=1 933w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?resize=595%2C423&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_6.png?resize=768%2C546&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png" data-lbwps-width="938" data-lbwps-height="669" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9066" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?fit=938%2C669&amp;ssl=1" data-orig-size="938,669" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?fit=640%2C456&amp;ssl=1" class="aligncenter size-full wp-image-9066" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?resize=640%2C456" alt="" width="640" height="456" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?w=938&amp;ssl=1 938w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?resize=595%2C424&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_7.png?resize=768%2C548&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos las opciones para el envío de correos electrónicos, en este caso, nos avisará cuando un usuario intente guardar un archivo no autorizado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png" data-lbwps-width="907" data-lbwps-height="691" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9067" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?fit=907%2C691&amp;ssl=1" data-orig-size="907,691" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?fit=640%2C488&amp;ssl=1" class="aligncenter size-full wp-image-9067" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?resize=640%2C488" alt="" width="640" height="488" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?w=907&amp;ssl=1 907w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?resize=595%2C453&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_8.png?resize=768%2C585&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Habilitamos las advertencias en el registro de eventos, así sabemos en todo momento, todo lo que está sucediendo en nuestro servidor de archivos, con respecto al bloqueo de los ficheros, aceptamos las opciones:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png" data-lbwps-width="909" data-lbwps-height="691" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9068" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?fit=909%2C691&amp;ssl=1" data-orig-size="909,691" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?fit=640%2C487&amp;ssl=1" class="aligncenter size-full wp-image-9068" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?resize=640%2C487" alt="" width="640" height="487" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?w=909&amp;ssl=1 909w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?resize=595%2C452&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_9.png?resize=768%2C584&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya tenemos la plantilla creada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png" data-lbwps-width="1358" data-lbwps-height="376" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9069" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?fit=1358%2C376&amp;ssl=1" data-orig-size="1358,376" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?fit=640%2C177&amp;ssl=1" class="aligncenter size-full wp-image-9069" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?resize=640%2C177" alt="" width="640" height="177" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?w=1358&amp;ssl=1 1358w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?resize=595%2C165&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?resize=768%2C213&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?resize=960%2C266&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para los demás recursos compartidos de nuestro File Server vamos a realizar las mismas operaciones, como podemos ver ya tenemos las plantillas creadas para los tres recursos compartidos de nuestro servidor de ficheros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png" data-lbwps-width="1360" data-lbwps-height="315" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9070" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?fit=1360%2C315&amp;ssl=1" data-orig-size="1360,315" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?fit=640%2C148&amp;ssl=1" class="aligncenter size-full wp-image-9070" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?resize=640%2C148" alt="" width="640" height="148" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?w=1360&amp;ssl=1 1360w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?resize=595%2C138&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?resize=768%2C178&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?resize=960%2C222&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crearnos los filtros de archivos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png" data-lbwps-width="1360" data-lbwps-height="282" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9071" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?fit=1360%2C282&amp;ssl=1" data-orig-size="1360,282" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?fit=640%2C133&amp;ssl=1" class="aligncenter size-full wp-image-9071" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?resize=640%2C133" alt="" width="640" height="133" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?w=1360&amp;ssl=1 1360w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?resize=595%2C123&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?resize=768%2C159&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?resize=960%2C199&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como comentamos anteriormente vamos a bloquear los archivos de audio, video y .exe en los tres recursos compartidos de nuestro File Server:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png" data-lbwps-width="906" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9072" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?fit=906%2C601&amp;ssl=1" data-orig-size="906,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?fit=640%2C425&amp;ssl=1" class="aligncenter size-full wp-image-9072" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?resize=640%2C425" alt="" width="640" height="425" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?w=906&amp;ssl=1 906w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?resize=595%2C395&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_13.png?resize=768%2C509&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png" data-lbwps-width="895" data-lbwps-height="596" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9073" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?fit=895%2C596&amp;ssl=1" data-orig-size="895,596" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?fit=640%2C426&amp;ssl=1" class="aligncenter size-full wp-image-9073" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?resize=640%2C426" alt="" width="640" height="426" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?w=895&amp;ssl=1 895w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?resize=595%2C396&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_14.png?resize=768%2C511&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png" data-lbwps-width="894" data-lbwps-height="598" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9074" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?fit=894%2C598&amp;ssl=1" data-orig-size="894,598" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?fit=640%2C428&amp;ssl=1" class="aligncenter size-full wp-image-9074" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?resize=640%2C428" alt="" width="640" height="428" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?w=894&amp;ssl=1 894w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?resize=595%2C398&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_15.png?resize=768%2C514&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya tenemos los tres filtros de bloqueo de archivos creados para nuestros recursos compartidos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png" data-lbwps-width="1361" data-lbwps-height="379" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9075" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?fit=1361%2C379&amp;ssl=1" data-orig-size="1361,379" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?fit=640%2C178&amp;ssl=1" class="aligncenter size-full wp-image-9075" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?resize=640%2C178" alt="" width="640" height="178" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?w=1361&amp;ssl=1 1361w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?resize=595%2C166&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?resize=768%2C214&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?resize=960%2C267&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En un futuro podremos ir añadiendo más tipos de archivos, sobre las plantillas que hemos creado para el filtrado de archivos en nuestros recursos compartidos.</li>
<li>Ahora desde un equipo cliente de nuestra infraestructura con Windows 10 vamos a intentar copiar un archivo .exe a nuestro File Server, y como podemos ver no nos deja copiar:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png" data-lbwps-width="1309" data-lbwps-height="791" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9077" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?fit=1309%2C791&amp;ssl=1" data-orig-size="1309,791" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?fit=640%2C387&amp;ssl=1" class="aligncenter size-full wp-image-9077" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?resize=640%2C387" alt="" width="640" height="387" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?w=1309&amp;ssl=1 1309w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?resize=595%2C360&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?resize=768%2C464&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_17.png?resize=960%2C580&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si nos vamos al visor de eventos de nuestro File Server, podemos ver los intentos que hemos realizado para copiar este .exe sin éxito:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png" data-lbwps-width="1370" data-lbwps-height="793" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9078" data-permalink="https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/afaefsw_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?fit=1370%2C793&amp;ssl=1" data-orig-size="1370,793" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="afaefsw_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?fit=640%2C371&amp;ssl=1" class="aligncenter size-full wp-image-9078" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?resize=640%2C370" alt="" width="640" height="370" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?w=1370&amp;ssl=1 1370w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?resize=595%2C344&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?resize=768%2C445&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?resize=960%2C556&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/06/afaefsw_18.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/administracion-del-filtrado-de-archivos-en-file-server-windows/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9059</post-id>	</item>
	</channel>
</rss>
