Adam Niedzwiedzki wrote:
> Hi guys,
> 
> I have a very simple setup
> 
> ADSL Mode (bridge mode) -- eth0-shorewall masq-eth1 -- internal lan
> Using PPPOE on a leaf bering-uclibc machine
> 
> All seems to work I can surf the web from my machines on the lan no issues
> at all, but I can't get my simple DNAT rule to work.
> I just want to pass port 80 into my local machine on 10.0.10.40 (this was
> working perfectly on my old setup, but I lost the config (dead floppy disk),
> and of course stupid me no backup, it was a shorewall 2.x machine, bout time
> I upgraded either way). 
> 
> So I setup a new machine, new shorewall 3.4.5 version and can't get a simple
> DNAT to work. 
> I don't get denies in shorewall.log and shorewall show nat shows the
> counters on that rule incrementing, I did the read the FAQ about gateway on
> machine etc, but it all worked perfectly on the old setup. The only thing
> that has changed is the new shorewall box.
> 
> Notes:
> My ISP does NOT block incoming ports.
> My internal machine on 10.0.10.40 can ping 10.0.10.1 (eth1) I cleared the
> arp table, rebooted the machine, and can surf the web fine from 10.0.10.40
> External IP is 202.10.93.183 via pppoe.

So what's the problem?

[EMAIL PROTECTED]:~/shorewall/tags/4.0.0/Shorewall-common$ telnet
202.10.93.183 80
Trying 202.10.93.183...
Connected to 202.10.93.183.
Escape character is '^]'.

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2005.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to