VPN over Brige: the roles from number 1 works but the roles from number
2 don't work why? (all outer roles works fine (port 500 -> port 500,
prot 50, ....))

1.: This work's:
ipchains -A ianus0 -i eth0 -d xxx.xxx.xxx.xxx -p udp -j ACCEPT
ipchinas -A ianus0 -i eth1 -s xxx.xxx.xxx.xxx -p udp -j ACCEPT
Apr  8 16:04:15 ianus kernel: Packet log: ianus0 ACCEPT eth1 PROTO=17
212.185.247.117:65535 xxx.xxx.xxx.xxx:65535 L=232 S=0x00 I=18277
F=0x00B9 T=118 (#6)
Apr  8 16:04:15 ianus kernel: Packet log: ianus0 ACCEPT eth0 PROTO=17
xxx.xxx.xxx.xxx:65535 212.185.247.117:65535 L=24 S=0x00 I=2892 F=0x00B9
T=128 (#7)

2.: This don't work: (WHY)
ipchains -A ianus0 -i eth0 -d xxx.xxx.xxx.xxx --destination-port
1024:65535 -p udp -j ACCEPT
ipchinas -A ianus0 -i eth1 -s xxx.xxx.xxx.xxx --source-port 1024:65535
-p udp -j ACCEPT
Apr  8 16:51:42 ianus kernel: Packet log: ianus0 DENY eth1 PROTO=17
212.185.247.117:65535 xxx.xxx.xxx.xxx:65535 L=232 S=0x00 I=30408
F=0x00B9 T=118 (#81)
Apr  8 16:51:43 ianus kernel: Packet log: ianus0 DENY eth0 PROTO=17
XXX.xxx.xxx.xxx:65535 212.185.247.117:65535 L=24 S=0x00 I=4249 F=0x00B9
T=128 (#80)


mfg 

Bernd Martin Geier
Systemadministration

ONTEC Software Solutions GmbH.
A-1020 Wien, Lassallestrasse 7

Tel: +43 1 205520 - 55
Fax.:  +43 1 205520 - 20
Mobil.: 0676 / 841 718 55
Email.: [EMAIL PROTECTED]

-----------------------------------------

_______________________________________________
Bridge mailing list
[EMAIL PROTECTED]
http://www.math.leidenuniv.nl/mailman/listinfo/bridge

Reply via email to