/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */



Audie Pierre <[EMAIL PROTECTED]> wrote:
>
> I don't believe the services being forwarded need to be disabled on
> the MASQ box because I have tried this scenario before.  Have you
> enccountered any problems with that?  I'd be glad to find out.

Actually I have never tried running a local service on the same port
that I am forwarding to another machine.  I suppose the main reason is
that it could easily lead to confusion, if someone expects to be able to
access a service on one box, and ends up on the other.

I suppose the masq code could be structured so that it "grabs" the
packets before they ever reach the local service.  So you could forward
telnet packets around a masq box, even if it has a local telnet service,
because masq predictably grabs them before the local inetd process even
sees them.  Strange, but I suppose it could be useful.  :)

> You definitely should be using ipmasqadm along with ipchains.  I
> cannot believe you are even mentioning "redir".  It's such an old
> story.  Get over it!

I have been pushing for ipmasqadm/portfw as well.  ;)

-- 
   [EMAIL PROTECTED] (Fuzzy Fox)      || "Nothing takes the taste out of peanut
sometimes known as David DeSimone  ||  butter quite like unrequited love."
  http://www.dallas.net/~fox/      ||                       -- Charlie Brown


_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to