Farkas Levente wrote:
Tom Eastep wrote:
Compare the output of 'shorewall-lite dump' before and after the restart.

it's rather huge and very different (because of packet number differences it's not easy to compare). it'd be better to create some kind of better dump which is easier to compare.
but i assume i find it (diff -u)!:

-   /proc/sys/net/ipv4/ip_forward = 0
+   /proc/sys/net/ipv4/ip_forward = 1

how can it be possible?

I assume that some other init script is turning it off after Shorewall-lite turns it on. What do you have in /etc/sysctl.conf?

-Tom
--
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
Check out the new SourceForge.net Marketplace.
It's the best place to buy or sell services for
just about anything Open Source.
http://sourceforge.net/services/buy/index.php
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to