> Anyways I?m trying to use AllSeeingEye ( shows servers for online gaming
> such as DOD and BF1942 ) but I cant seem to get it to work for me.
> These are the rules that I use:
> ACCEPT  loc             net             tcp     27243:27245
> ACCEPT  loc             net             udp     27243:27245
So you are playing that game on your ''firewall''?
If not: You need to DNAT instead of ACCEPT. And be sure to open all
ports needed for that game.
> And this is my policy:
> loc             net             REJECT
> #loc            net             ACCEPT
> fw              net             ACCEPT
> loc             fw              ACCEPT
> net             all             DROP
> all             all             DROP
>  
> This does not work and I get no drop messages with shorewall show log or
> in /var/log/messages
> Anybody using this with shorewall ?
You will not get messages in /var/log/messages, unless you specify a
log-level. Why did you change the default settings for 2all chains?
net  all  DROP  info
all  all  REJECT  info
 > p.s. what service is on port 7001 UDP ?
Don''t know. /etc/services says
afs3-callback   7001/tcp                        # callbacks to cache managers
afs3-callback   7001/udp                        # callbacks to cache managers
  karsten
-- 
Hi, I''m a signature virus. Copy me into your ~/.signature to help me
spread!