Sudo ufw allow 5432/tcp
を使用してufwを使用してubuntuでポート5432を開こうとしています
次に、nmapを使用して、ポート5432が開いているかどうかを確認し、これを取得します。
root@domain:~# Sudo nmap -sS -O 127.0.0.1
Starting Nmap 5.21 ( http://nmap.org ) at 2011-12-01 14:28 MSK
Nmap scan report for localhost.localdomain (127.0.0.1)
Host is up (0.000084s latency).
Not shown: 994 closed ports
PORT STATE SERVICE
22/tcp open ssh
25/tcp open smtp
80/tcp open http
587/tcp open submission
5432/tcp open postgresql
10000/tcp open snet-sensor-mgmt
Device type: general purpose
Running: Linux 2.6.X
OS details: Linux 2.6.15 - 2.6.30
Network Distance: 0 Hops
OS detection performed. Please report any incorrect results at http://nmap.org/submit/ .
Nmap done: 1 IP address (1 Host up) scanned in 2.28 seconds
root@domain:~# Sudo nmap -sS -O 1xx.xxx.xxx.xxx
Starting Nmap 5.21 ( http://nmap.org ) at 2011-12-01 14:30 MSK
Nmap scan report for domain.info (1xx.xxx.xxx.xxx)
Host is up (0.000086s latency).
Not shown: 997 closed ports
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
10000/tcp open snet-sensor-mgmt
Device type: general purpose
Running: Linux 2.6.X
OS details: Linux 2.6.15 - 2.6.30
Network Distance: 0 Hops
OS detection performed. Please report any incorrect results at http://nmap.org/submit/ .
Nmap done: 1 IP address (1 Host up) scanned in 2.65 seconds
1xx.xxx.xxx.xxxは私のサーバーのIPです。
Pg_hba.confを編集しました:
# DO NOT DISABLE!
# If you change this first entry you will need to make sure that the
# database
# super user can access the database using some other method.
# Noninteractive
# access to all databases is required during automatic maintenance
# (custom daily cronjobs, replication, and similar tasks).
#
# Database administrative login by UNIX sockets
local all postgres ident
# TYPE DATABASE USER CIDR-ADDRESS METHOD
# "local" is for Unix domain socket connections only
local all all ident
# IPv4 local connections:
Host all all 0.0.0.0/0 md5
# IPv6 local connections:
Host all all ::1/128 md5
しかし、ポート5432は開かれていません。
pg_hba.conf
を編集する必要があります:
Host all all 192.168.0.0/24 trust
これにより、192.168.0.0/24
ネットワークのすべてが接続できるようになります。すべてのワイルドカードは0.0.0.0/0
になります。詳細 ここ 。
次にpostgresql.conf
を編集してlisten_address
を変更します。
listen_addresses='*'