/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting!
/* ALSO: Don't quote this header. It makes you look lame :-) */
Hello, I have been encountering a critical problem with ipmasqadm and I want
to let someone know about it. Here is my set up:
Mandrake 7.1 2.2.16-3-secure kernel
ipmasqadm-0.4.2-2.i386.rpm
I have tried ipmasqadm with both pmfirewall and Trinity's firewall, both with
identical failures. Here is what happens.
For months I was having a problem with my outboung ethernet traffic failing on
my firewall machine, after various lengths of up-time. When this happened, my
internally masq'd machines would work fine, but my firewall server itself was
unable to reach anyone on the outside (via ping/telnet/lynx/etc.). The only
way to regain connectivity was a reboot (I tried to restart every service in
/etc/rc.d/init.d/ to no avail).
I finally "stumbled" across what was causing the problem. This problem would
begin as soon as I installed the ipmasqadm rpm file, and restarted my firewall
with some ipmasqadm entries in it(see below). It would not happen right away,
but eventually (minutes or hours), my connectivity would fail. As soon as I
removed ipmasqadm and the entries, then rebooted, everything would run fine
for months.
Just out of curiosity, I have tried to re-install ipmasqadm, with different
kernels, and different distributions (RedHat and mandrake) but with identical
results.
My question is this, is there something wrong with my firewall entries that
could kill every port as soon as I install ipmasqadm, or is there a problem
with the program itself?
Has anyone seen this problem before? I really need to do port forwarding on my
network, and would be glad to supply any other information necessary to get
the cause figured out.
#ipmasqadm autofw -A -r udp 2300 2400 -h 192.168.0.100
#ipmasqadm autofw -A -r tcp 2300 2400 -h 192.168.0.100
#ipmasqadm autofw -A -r upd 1100 7000 -h 192.168.0.100
#ipmasqadm autofw -A -r tcp 1100 5000 -h 192.168.0.100
#ipmasqadm autofw -A -r udp 47624 47624 -h 192.168.0.100
--
Stephen Lawrence
[EMAIL PROTECTED]
_______________________________________________
Masq maillist - [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ --
THIS INCLUDES UNSUBSCRIBING!
or email to [EMAIL PROTECTED]
PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.