On 06/04/2011 12:03, Steven Jan Springl wrote:
On Wednesday 06 April 2011 09:48:42 Cameron, George G. wrote:
Tom,
1. shorewall.tar.gz attached (including generated caps file) as
requested 2. I noticed that I was still using shorewall.conf from 4.4.18.1,
so swapped to the new conf file:
1. now, no error is reported - but this appears to be because
OPTIMIZE=0 has now been made the default
2. OPTIMIZE=4 results in the error report as before; other bits
(e.g. OPTIMIZE=11) do not
3. however, REDIRECT still does not appear to be working, with
or without the OPTIMIZE bit that results in the error report
3. I have some experience with iptables-based firewalls, but would
not claim to be 'expert'. Is it correct that in 'shorewall show -t
nat', the dnat chain (which references net_dnat) should show 0
references?
And of course, many thanks again for taking a look.
George
George
I have recreated both problems. They seem to be caused by the parameter
'physical=+' in the interfaces file.
If the parameter is removed or its value changed to a value other than
just '+' the problems do not occur.
Indeed - so the problem was an error in my configuration after all. That
does indeed fix the problem and my rules now work as expected.
Many thanks for your help!
George
Steven.
------------------------------------------------------------------------------
Xperia(TM) PLAY
It's a major breakthrough. An authentic gaming
smartphone on the nation's most reliable network.
And it wants your games.
http://p.sf.net/sfu/verizon-sfdev
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users
--
---------------------------------------------------------------------
George Cameron Email: [email protected]
School of Medical Sciences
College of Life Sciences& Medicine
University of Aberdeen
Foresterhill Fax: +44 (0)1224-552514
Aberdeen AB25 2ZD Telephone: +44 (0)1224-553210
Scotland, UK
------------------------------------------------------------------------------
Xperia(TM) PLAY
It's a major breakthrough. An authentic gaming
smartphone on the nation's most reliable network.
And it wants your games.
http://p.sf.net/sfu/verizon-sfdev
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users