Jon Miner wrote:
> At 09:44 AM 7/13/99 , John Anderson wrote:
> >I think your script should read...
> >/sbin/ipfwadm -F -a masquerade -W ppp0 -S 192.168.1.0/24 -D 0.0.0.0/0
> >instead of
> >/sbin/ipfwadm -F -a masquerade -W ppp0 -S 192.168.0.0/16 -D 0.0.0.0/0
> >
> >192.168.x.x is a class c network with a netmask of 255.255.255.0. I
> > would guess that this is why diald is dialing when you log on to
> > the linux box.
> I can't tell you if this is why diald is broken, but his netmask is
> wrong. a class c should be /24 as you point out.
This isn't a real netmask. It's rule for filtering package. My rules
are:
/sbin/ipfwadm -F -p deny
/sbin/ipfwadm -F -a m -S 10.0.0.0/16 -D 0.0.0.0/0
10.x.x.x is a class A network, but I just want 10.0.x.x to be
masqueraded. Second rule above prevents 10.1.x.x ... 10.255.x.x from
being masqueraded.
Well, I put above rules in /etc/rc.d/rc.local in my Slackware 3.6 box
follows by these line:
/usr/local/squid/bin/squid
diald
I have more ipfwadm setting. It just works. BTW, do you notice the
difference in my and Sanjiv's rules. My diald is 0.99.
Bye,
Joke.
--
* Atsawin Chowanakritsanakul
* Thasala Suzuki Co., Ltd. Nakhon Si Thammarat, Thailand
* Work: +66 75 521123, Home: +66 75 330124
* [EMAIL PROTECTED]
* http://i.am/jmeam/ http://www.nakhon.net/
PS. Do not believe below instruction how to unsubscribe. Once, you
joined this list, you can never leave. :-)
-
To unsubscribe from this list: send the line "unsubscribe linux-diald" in
the body of a message to [EMAIL PROTECTED]