/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! 
/* ALSO: Don't quote this header. It makes you look lame :-) */


It always seems difficult the first time you set it up....but it does get
easier...

Here's the stuff I usually get wrong....

1) Firewall--RH7 come with a built in firewall.  I use the trinity firewall,
stronger and better.  The first thing to do is visit the trinityOs site and
get the trinityos.doc  It lays out a simple(weak) ruleset and all the places
you need to add info to make the masq work.

2) check your routing.  I often forgot to set the default route properly in
the config.

3) I also, trasposed eth0 and eth1, which makes for trouble.

4) read TrinityOs.  It's the absolute best resource for a beginner.  It
absolutely solved ALL of my issues.

5) make sure IPCHAINS and the other resources are running (ntsysv)

6) If you still need help, include the following in your next post:
        rc.local
        rc.firewall
        route

Mever fear.  There are a lot of experienced people on this list.  I've never
had a problem that I couldn't get fixed.




-----Original Message-----
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf
Of Steve Sutton
Sent: Friday, January 19, 2001 4:37 PM
To: [EMAIL PROTECTED]
Subject: [Masq] Idiot needs help


/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting!
/* ALSO: Don't quote this header. It makes you look lame :-) */


I hope you guys can help me, 'cus I'm pretty much stuck getting IP
Masquerading working.

What I've done:-
Installed RH7 (default kernel config)
followed the IP-Masquerading-HOWTO (ie, created rc.firewall - which runs
correctly)

AFAIK, that's all I need to do, however, I can't contact the outside world
from the masq'd machine.  Do any of you have any experience with this
setup, and know of any other steps that I need, or anything an masq newbie
might miss?
I can talk from the masq'd machine to the masq server, and from the masq
server to the outside world, but not from the masq'd machine to the
outside world.  ipchains appear to be set up as the HOWTO suggests, and
the server is the default route for traffic from the masq'd machine.

--
Steve.

_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ --
THIS INCLUDES UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ -- 
THIS INCLUDES UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to