Brad Clarke wrote:
> I think I happened upon a similar problem last night that this
> explanation solved for me :)
> 
> I had a loc zone on the vlan2 interface that had access to my net
> zone. I added the vlan3 interface and put it in a wifi zone, and put
> what I needed into interfaces, zone, masq, rules, etc. I could get
> traffic between local zones but could not get net access for some
> reason. It never occurred to me that I had to add something to
> providers to give the new interface/zone net access. Having never seen
> an example that listed more than one interface in the COPY field I
> thought the one I had set up initially was all I ever needed. Sure
> enough, as soon as I added vlan3 to the COPY field things started
> working exactly as I thought they should.
> 
> Just to make sure I have not done something foolish (as I often do),
> would a good explanation of the COPY field for most users be that it
> should contain a list of the interfaces that you would like to give
> internet access to?

I think that a better explaination is that it should include all
interfaces that do not themselves have an entry in the providers file.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA
-OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise
-Strategies to boost innovation and cut costs with open source participation
-Receive a $600 discount off the registration fee with the source code: SFAD
http://p.sf.net/sfu/XcvMzF8H
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to