/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! 
/* ALSO: Don't quote this header. It makes you look lame :-) */


Jose M. Sanchez wrote:

> Wouldn't this render his Masq setup useless though?
> 
> If he needs to do something this extreme, he might as well not masq the
> host.
> 
> -JMS
> 
> |Paul R. Morin wrote:
> |
> |> I have a case were I need to open all ports above 1024 for a
> |specific rule.
> |> Is there any way to specify a range of port in the portfw command line?
> |> Nothing in the HOWTO or man pages seems to define this...
> |
> |probably the easiest way is to fwmark 1024: with 1 ipchains command
> |and then forward the packets with 1 "ipmasqadm mfw" command.

it is wierd. i don't understand why someone might want to do this but
it has been requested a few times. there must be a reason. i don't think
it's entirely useless, though. it might be to split up port forwarded
services across two hosts? i.e. the (trusted) masquerading host handles
the privileged internet services and another (less trusted?) host handles
unprivileged services? who knows?

raf

_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ -- 
THIS INCLUDES UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to