Tom Eastep wrote:
What I suggest that you try is:
a) On the firewall system, "tcpdump -nvvi eth0 host 61.184.172.35 and port 25".
b) From 61.184.172.35, "telnet 137.186.135.69 25".
Are you seeing response packets? Do they have the correct checksum (tcpdump
will complain if they don't). Do they have the correct Source IP
(137.186.135.69)?
Looks like, but as we've already established I'm not an expert.
13:17:34.572203 IP (tos 0x0, ttl 63, id 0, offset 0, flags [DF], proto:
TCP (6), length: 60) 137.186.135.69.25 > 161.184.172.35.58597: S, cksum
0x7414 (correct), 702401703:702401703(0) ack 2900661819 win 5792 <mss
1460,sackOK,timestamp 2690993 18165458,nop,wscale 2>
13:17:35.985329 IP (tos 0x0, ttl 63, id 0, offset 0, flags [DF], proto:
TCP (6), length: 60) 137.186.135.69.25 > 161.184.172.35.58597: S, cksum
0x72ae (correct), 702401703:702401703(0) ack 2900661819 win 5792 <mss
1460,sackOK,timestamp 2691351 18165458,nop,wscale 2>
J
begin:vcard
fn:Jon Watson
n:Watson;Jon
email;internet:[EMAIL PROTECTED]
tel;work:1.403.875.6048
x-mozilla-html:FALSE
url:http://www.jonwatson.ca
version:2.1
end:vcard
-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys-and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users