-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

You do not have to worry about your IP address changing as you are
pointing to a device name (using -W instead of -V which points to an
IP address).

Example;

/sbin/ipfwadm-wrapper -F -a accept -P udp -S 192.168.x.x 53 -D 0/0 53
- -W ppp0

where "ppp0" was supposed to get an IP address and gateway from your
ISP.

- --
Moonshi Mohsenruddin           [EMAIL PROTECTED]
Singapore       icq:2595480       http://www.linux.com.sg

> -----Original Message-----
> From: Juanjo Ciarlante [mailto:[EMAIL PROTECTED]]
> Sent: Monday, August 30, 1999 11:03 PM
> To: Admin
> Cc: Moonshi Mohsenruddin; [EMAIL PROTECTED]
> Subject: Re: IP Masquerading problems with 2.2.x
>
>
> On Sun, Aug 29, 1999 at 10:15:30PM +0200, Admin wrote:
> > On Sun, 29 Aug 1999 21:37:23 +0800, Moonshi Mohsenruddin wrote:
> >
> > >What you could do is to add the masquerading entries for DNS in
your
> > >IPFWADM-WRAPPER or IPCHAINS rules. I used "ipfwadm-wrapper" as I
am
> > >sooo familiar with it.
> > >
> > >it reads like this in my rules;
> > >
> > >/sbin/ipfwadm-wrapper -F -a accept -P udp -S 192.168.x.x 53 -D
0/0 53
> > >-W eth0
> >
> >
> > nice idea, but first it works OK, then, when I got adifferent
> IP from my ISP, it won't, then after a while, maybe I got the
> IP I had first, it works again... So I imagine some internal
> tables won't get cleared
> > often enough?
> >
> sometime ago ipmasq code was changed to support sort-of "dest
> loose" streams:
> SAME masq tunnel used for SAME src ip and port. That maybe hurting
you,
> try lowering ipmasq's UDP timeout
>   [default:      900   120   300]
>                              ^^^------UDP
>   # ipchains -S  900   120   30
> Please test if this works
>
> Regards
>
>
> --
> -- Juanjo       http://juanjox.kernelnotes.org/
>             ... because there IS an OS that CAN follow your power
-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 6.0.2i

iQA/AwUBN8o0Vmefe0TVuy5lEQJTsgCgoYkUHfJXETZRxlkWvxB+SXtampsAoID9
Ptc4ckpn1Zihkh9BdLEoDo/u
=P7We
-----END PGP SIGNATURE-----


-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]

Reply via email to