On Thursday 13 March 2003 22:01, Mugur TOMITA wrote:
> The filters are there... if you take a closer look you'll that my
> copy/paste was falty...
>
> But I can tell you I solved the problem. I attched my solution below.
> Stef, you are right, my filters are not working...
> In fact I don't konow what I did wrong:
> for marking packets depending on their source I used
> ipchains -A output -p all -s 192.168.1.0/30 -m 1
> and the filters look like
> tc filter add dev eth0 parent 1:0 protocol ip prio 1 handle 1 fw
> classid 1:8 Could it be the fact that I made the marking on the output
> chains and not on the input chain?
Yes. If you nat, the source address is rewritten to the address of your
firewall.
Stef
--
[EMAIL PROTECTED]
"Using Linux as bandwidth manager"
http://www.docum.org/
#lartc @ irc.oftc.net
_______________________________________________
LARTC mailing list / [EMAIL PROTECTED]
http://mailman.ds9a.nl/mailman/listinfo/lartc HOWTO: http://lartc.org/