man, 2002-06-10 kl. 07:46 skrev OTR Comm: > Is it true that iptables does not support virtual interfaces for virtual > domains?
> That is, I have many virtual domains setup on virtual interfaces to eth0 > (e.g. eth0:1 xyz.xyz.xyz.xyz) currently running on a system with > ipchains. I am thinking about converting to a new kernel with iptables, > but I can not get iptables to work with the virtual interfaces on eth0. > I setup a test server to verify that iptables would work, but I can not > access any of my test domains (i.e., web sites through Apache) when I > have the IP for the domain tied to a virtual interface. If I shutdown > my iptables firewall, I can access the web sites fine. > What's up here, anybody got any ideas and solutions? Instead of using aliases, if you have iproute2 installed and can use the 'ip' utility, give your eth0 (and perhaps other devices) actual addresses. The ip command is poorly - or rather too comprehensively - documented and 'ip help' needs some fathoming, but here's a useful reference: http://leaf.sourceforge.net/devel/ericw/ip-syntax.php Best, Tony -- Tony Earnshaw e-post: [EMAIL PROTECTED] www: http://www.billy.demon.nl gpg public key: http://www.billy.demon.nl/tonni.armor Telefoon: (+31) (0)172 530428 Mobiel: (+31) (0)6 51153356 GPG Fingerprint = 3924 6BF8 A755 DE1A 4AD6 FA2B F7D7 6051 3BE7 B981 3BE7B981
signature.asc
Description: Dette er en digitalt signert meldingsdel
