SRCDS Steam group


Allowing Ports Through IPtables (Haven't you seen this enough?)
#1
Alright so I finally got my ZER0 clan servers up about a week ago, everything works fine except there is no firewall atm because the servers don't seem to like firewalls at all.... Its just the linux one but evne though I've opened the neccessary ports it still doesn't work for example someone posted

Quote:Steam Friends Service UDP 1200 1200
Steam Main UDP UDP 27000 27015
Steam Main TCP TCP 27020 27039
Steam CyberCafe TCP 27040 27041
Steam Dedicated Server HLDS, SRCDS UDP 27015 27015
Steam Dedicated Server HLTV UDP 27020 27020
Steam SRCDS Rcon TCP 27015 27015

Which I did, also it's important to note that my servers (I have 3 atm with 2 more on the way) are on ports 27070 27085 27100 and 27115*4later and I gave them all 15 ports below for SRCDS so I have it set to UDP 27050-115 open and TCP 27070,85,100,115 open and the server still does not work so I got angry and opened up a range of both UDP and TCP ports from 27000 to 27200, and STILL NO LUCK so as it stands my server is valnurable and probably gonna get hacked or kited until I can bring my FW up... BTW: Outgoing and Forwarded ports are set to default accept, incoming are default to drop[/quote]
Reply
#2
Okay well if I open TCP and UDP ports from 1-40000 Incoming it seems to work.... but that's just as bad as leaving the firewall off.....

If I could just maybe get the IPtables entry someone else has been successful with it might just work. I guess the biggest problem I'm having is I have 3 CS:S servers running on the same IP address with different ports and unfortunately everyone has a tutorial but it's always for the same default port and for only one server... maybe after this question is answered it will put and end to the madness.....
Reply
#3
I also neglected to mention what may be an important detail, as it stands my server has 15 separate Ip's allocated to it from the data center, all of the ips are controlled by one network interface and currently I am having all of my SRCDS servers bind to a virtual network interface eth0:0. This information may be of use, any thoughts or suggestions would be appreciated, maybe even a "Hello Kab you suck at linux" would be enough to break the feeling of being all alone in the SRCDS world lol
Reply
#4
I also made a post on the steam forums as well to help with this issue:

STEAM POST
Reply
#5
I dont understand, what has this to do with port forwarding?
What kind of firewall are you using? iptables directly? Can you post the firewall rules you are using?
http://www.fpsmeter.org
http://wiki.fragaholics.de/index.php/EN:Linux_Optimization_Guide (Linux Kernel HOWTO!)
Do not ask technical questions via PM!
Reply
#6
BehaartesEtwas Wrote:I dont understand, what has this to do with port forwarding?
What kind of firewall are you using? iptables directly? Can you post the firewall rules you are using?

I'm using IPtables, and there is no port forwarding it's done directly on the server. the rules are listed on a steam forum post I made in addition to this one <HERE>
Reply
#7
you must not specify the source ports. the clients might use any client port, not necessarily 27xxx!
http://www.fpsmeter.org
http://wiki.fragaholics.de/index.php/EN:Linux_Optimization_Guide (Linux Kernel HOWTO!)
Do not ask technical questions via PM!
Reply
#8
The ports are setup in IPtables as -dport or destination port so that's not it unfortunately
Reply
#9
you have some rules with -sport...
http://www.fpsmeter.org
http://wiki.fragaholics.de/index.php/EN:Linux_Optimization_Guide (Linux Kernel HOWTO!)
Do not ask technical questions via PM!
Reply
#10
BehaartesEtwas Wrote:you must not specify the source ports. the clients might use any client port, not necessarily 27xxx!

Well I mentioned this on the steam forum but I basically found a work around, I just installed APF firewall which still uses iptables but it's user friendly and well... idiot proof, it basically sets itself up, you just forward the basic ports and it opens new ones if it receives a related or established request, it's quite convenient actually... but it's not a true solution it's just a work around, any idea on how to truly fix it would be great!
Reply


Forum Jump:


Users browsing this thread: 5 Guest(s)