Ok thanks, with the modification:
Shorewall-3.2.1 Mangle Table at gw.reep.ophelys.org - mer jan 24
15:04:54 CET 2007
Counters reset mer jan 24 15:04:29 CET 2007
Chain PREROUTING (policy ACCEPT 234 packets, 26374 bytes)
pkts bytes target prot opt in out source
destination
208 23519 tcpre all -- * * 0.0.0.0/0
0.0.0.0/0
Chain INPUT (policy ACCEPT 154 packets, 17340 bytes)
pkts bytes target prot opt in out source
destination
Chain FORWARD (policy ACCEPT 79 packets, 8958 bytes)
pkts bytes target prot opt in out source
destination
78 8107 tcfor all -- * * 0.0.0.0/0
0.0.0.0/0
Chain OUTPUT (policy ACCEPT 7492K packets, 2470M bytes)
pkts bytes target prot opt in out source
destination
131 17299 tcout all -- * * 0.0.0.0/0
0.0.0.0/0
Chain POSTROUTING (policy ACCEPT 238 packets, 28694 bytes)
pkts bytes target prot opt in out source
destination
205 25214 tcpost all -- * * 0.0.0.0/0
0.0.0.0/0
Chain tcfor (1 references)
pkts bytes target prot opt in out source
destination
0 0 MARK udp -- * * 0.0.0.0/0
0.0.0.0/0 TOS match 0x10 udp dpt:4569 MARK set 0x1
Chain tcout (1 references)
pkts bytes target prot opt in out source
destination
Chain tcpost (1 references)
pkts bytes target prot opt in out source
destination
0 0 CLASSIFY all -- * eth0 0.0.0.0/0
0.0.0.0/0 MARK match 0x1/0xff CLASSIFY set 1:11
0 0 CLASSIFY all -- * eth0 0.0.0.0/0
0.0.0.0/0 MARK match 0x2/0xff CLASSIFY set 1:12
0 0 CLASSIFY all -- * eth0 0.0.0.0/0
0.0.0.0/0 MARK match 0x3/0xff CLASSIFY set 1:13
0 0 CLASSIFY all -- * eth0 0.0.0.0/0
0.0.0.0/0 MARK match 0x4/0xff CLASSIFY set 1:14
Chain tcpre (1 references)
pkts bytes target prot opt in out source
destination
Alexander Wilms a écrit :
> On Wednesday 24 January 2007 14:31, Noc Phibee wrote:
>
>> ok, i have put a stop and start and now i have:
>>
> Ya, this is the answer for the missing chains.
>
>
>
>> Chain tcpre (1 references)
>> pkts bytes target prot opt in out source
>> destination
>> 3 120 MARK udp -- * * 0.0.0.0/0
>> 0.0.0.0/0 TOS match 0x10 udp dpt:4569 MARK set 0x1
>> [EMAIL PROTECTED] tmp]#
>>
> And this looks better (3 packets/120 bytes marked), but...
>
>
>> Chain tcpost (1 references)
>> pkts bytes target prot opt in out source
>> destination
>> 0 0 CLASSIFY all -- * eth0 0.0.0.0/0
>> 0.0.0.0/0 MARK match 0x1/0xff CLASSIFY set 1:11
>>
>
> ...none classified.
>
> Wild guess,
>
> Try it with MARK_IN_FORWARD_CHAIN=Yes in shorewall.conf,
> restart cause some IAX traffic do a shorewall show mangle again and show me
> the output of tcpost Chain.
>
> -------------------------------------------------------------------------
> Take Surveys. Earn Cash. Influence the Future of IT
> Join SourceForge.net's Techsay panel and you'll get the chance to share your
> opinions on IT & business topics through brief surveys - and earn cash
> http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
> _______________________________________________
> Shorewall-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>
>
>
-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys - and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users