How do you know the port is not forwarded? Does your ISP block port 80 to begin with? DHCP is a bad sign.
On 2003.08.16 19:31 Karthik Poobalasubramanian wrote: > I have my main linux box working as a firewall/router with IP > Masquerading. The setup is as follows > > main system (Firewall/Router) > eth0- internal interface (192.167.0.1) > eth1- internet facing interface. (DHCP) > This system runs Redhat 9 and a firewall script that i grabbed from the > net. I have modified it to suit my needs. > > > system -2 > The second one is a IBM 300GL connected to main system through a hub.It > runs debian and doesn't have any firewall on it. > eth0(192.167.0.105) > > now the simple script that i am using works great(saved 40 bucks on a > router ;)) but the one thing that i ma not able to do is port-forward. I > am trying to forward port 80(plugin anyother port doesn't matter) but its > not working. I am running a apache(on port 80) on 192.167.0.105 and able > to open it on the browser on the main system. > in my script i have following > > ############################################################################ > $IPTABLES -A INPUT -i $INSIDE -d 192.167.0.105 -j ACCEPT > # > $IPTABLES -A INPUT -i $OUTSIDE -d 0/0 -p tcp --dport 80 -j ACCEPT > # Port forwarding > $IPTABLES -t nat -A PREROUTING -i $OUTSIDE -p tcp --dport 80 -j DNAT --to > 192.167.0.105 > ############################################################################ > you can see the full script > http://www.i-55.com/~pkarthik/rc.firewall-2.4 > > I know i am doing a stupid mistake somewhere but can't figure out > where. any pointers? > Karthik > > > _______________________________________________ > General mailing list > [email protected] > http://brlug.net/mailman/listinfo/general_brlug.net >
