Toni wrote:
Hi Tom

I attach the new dump. I tried your last recommendation and IT WORKS!!!!!

But i don't know the reason :-(

It means that your ISP is _not_ routing your private network through the IP address of eth0 but are rather assuming that the private network is directly accessible. Setting the 'proxyarp' flag on eth0 and eth2 makes the firewall respond to ARP requests on each of those interfaces for IP addresses routed out of the other interface.

-Tom
--
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to