Northe, Juergen
2002-Oct-11 14:36 UTC
WG: AW: [Shorewall-users] masquerade INCOMMING ip =i-|
> > >> > > >> #shorewall show tc > > >> RTNETLINK answers: Invalid argument > > >> Dump terminated > > >> > > >> #iptables -L | grep "172.20.6.1" > > >> - no output. > > >> > > >> hmm.. ? > > > > > >shorewall show nat | grep ''172\.20\.6\.1'' > > > > looks good: > > > > 0 0 SNAT all -- * eth0 0.0.0.0/0 0.0.0.0/0 MARK match 0x9 > > to:172.20.6.1 > > > > >shorewall marks the packets for post-processing with the right value but they still untouched (external IP) when they reach the internal net. ( they should have 172.20.6.1)
Northe, Juergen wrote:>>>>>#shorewall show tc >>>>>RTNETLINK answers: Invalid argument >>>>>Dump terminated >>>>> >>>>>#iptables -L | grep "172.20.6.1" >>>>> - no output. >>>>> >>>>>hmm.. ? >>>> >>>>shorewall show nat | grep ''172\.20\.6\.1'' >>> >>>looks good: >>> >>>0 0 SNAT all -- * eth0 0.0.0.0/0 0.0.0.0/0 MARK match 0x9 >>>to:172.20.6.1 >>> >>> >> > shorewall marks the packets for post-processing with the > right value but they still untouched (external IP) when they > reach the internal net. ( they should have 172.20.6.1)Please send me the output from "/sbin/shorewall status". -Tom -- Tom Eastep \ Shorewall - iptables made easy AIM: tmeastep \ http://www.shorewall.net ICQ: #60745924 \ teastep@shorewall.net