mess-mate wrote:> Hi,
>
> i can''t solve this reject :
>
> serv kernel: Shorewall:dmz2all:REJECT:IN=eth1 OUT>
MAC=00:e0:29:3c:34:bd:00:a0:cc:3f:48:3e:08:00 SRC=192.168.20.254
> DST=192.168.30.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP
> TYPE=8 CODE=0 ID=61822 SEQ=2
>
>
> This message is coming from 192.168.20. (the host of the vserver guest)
>
>
> any hint ?
Hi,
You have a policy that by default rejects traffic from zone "dmz" to
"all", and
you don''t seem to have a rule that allows ICMP type 8, a.k.a. ping.
Your mail
doesn''t by far contain the information needed to dig deeper than this.
If that wasn''t what you meant to ask, please read
<http://www.shorewall.net/support.htm> and make another attempt. Then I am
sure
that one of the more experienced people can chime in and help you.
Best regards,
/Martin
-------------------------------------------------------------------------
This SF.net email is sponsored by the 2008 JavaOne(SM) Conference
Don''t miss this year''s exciting event. There''s still
time to save $100.
Use priority code J8TL2D2.
http://ad.doubleclick.net/clk;198757673;13503038;p?http://java.sun.com/javaone