On Wed, 19 May 2010, j.witvl...@mindef.nl wrote:
Hi Jerry,
Just a general remark.
When deploying a firewall, it is advisable to have (atleast for input, better
for all) to have the general policy set to drop, and only allow in what you
expect to be coming in. If you put a -j log line as a
you forgot about...
Now the default is allow, and only doing some SNAT and DNAT rules...
hw
-Original Message-
From: centos-boun...@centos.org [mailto:centos-boun...@centos.org] On Behalf Of
Jerry Geis
Sent: Tuesday, May 11, 2010 12:10 AM
To: CentOS ML
Subject: [CentOS] setup firewall
Dominik Zyla wrote:
--
Dominik Zyla
I read through the document. I dont see what I have done wrong still.
Do my routing rules not look correct from my previous post?
Sorry I am not catching on. Thanks for your assistance.
Try to add iproute2 rules for eth1. You only paste iptables
You need to make source routing on 74.223.8.176 and eth1. Please, read
this: http://linux-ip.net/html/adv-multi-internet.html
--
Dominik Zyla
I read through the document. I dont see what I have done wrong still.
Do my routing rules not look correct from my previous post?
Sorry I am not
On Tue, May 11, 2010 at 09:24:53AM -0400, Jerry Geis wrote:
You need to make source routing on 74.223.8.176 and eth1. Please, read
this: http://linux-ip.net/html/adv-multi-internet.html
--
Dominik Zyla
I read through the document. I dont see what I have done wrong still.
Do my
On Sat, May 08, 2010 at 02:46:17PM -0400, Jerry Geis wrote:
Thanks for the -t nat suggetion.
How does someone debug iptables?
Seems like the local eth0 is working , eth2 is working but connections
on eth1 dont seem to go anywhere.
How can I tell what is happening for eth1 and iptables?
I have a centos box with 3 nics. eth0 is internal, eth1 is T1 data and eth2 is
cable data.
Everything is working on eth2 cable. External NAT is working just fine for eth2.
However external address 74.x.x.x on eth1 is not working.
Below is my iptables information.
I setup eth1 same as eth2 just
On Mon, May 10, 2010 at 06:10:02PM -0400, Jerry Geis wrote:
I have a centos box with 3 nics. eth0 is internal, eth1 is T1 data and eth2
is cable data.
Everything is working on eth2 cable. External NAT is working just fine for
eth2.
However external address 74.x.x.x on eth1 is not working.
I am trying to setup some rules on a box with 3 nic cards. Two internet
connections and one office connection.
eth0 is office
eth1 is internet T1
eth2 is internet Cable
when I do iptables -F then iptables -L everything is gone as it should be.
Then I do
iptables -t nat -A PREROUTING -p tcp -d
On 8 May 2010 14:12, Jerry Geis ge...@pagestation.com wrote:
then I do iptables -L again and the rule is not there. Am I missing
something?
Try iptables -t nat -L, though you may want to use the -n option too.
From the iptables manpage[1]:
-L, --list [chain]
List all rules in the selected
Thanks for the -t nat suggetion.
How does someone debug iptables?
Seems like the local eth0 is working , eth2 is working but connections
on eth1 dont seem to go anywhere.
How can I tell what is happening for eth1 and iptables?
Thanks,
Jerry
___
On Saturday 08 May 2010 14:46, Jerry Geis wrote:
How does someone debug iptables?
Seems like the local eth0 is working , eth2 is working but connections
on eth1 dont seem to go anywhere.
How can I tell what is happening for eth1 and iptables?
Maybe its your routing? Post both the
12 matches
Mail list logo