Thanks Tom. Ended up being that combined with a default route on the GUEST that pointed to another machine instead of the HOST. Oops.
Out of curiosity: Is it more appropriate for the GUEST to default route back to the eth1 address or to the bridge address on the HOST? I have it set to the eth1 address and all is working, just curious if that was the "right" way. Thanks, Kevin On 10/7/2012 9:00 AM, Tom Eastep wrote: > On 10/06/2012 11:28 PM, Kevin Carpenter wrote: > >> Can somebody point out what I'm missing? I suspect its something quite >> obvious, but I'm just not seeing it. Please let me know if you need any >> more information. I thought this would be quick and easy about 6 hours >> ago... lol. > Hi Kevin, > > You have erroneously configured a default route out of br0. Remove it > and DNAT should begin working. > > -Tom ------------------------------------------------------------------------------ Don't let slow site performance ruin your business. Deploy New Relic APM Deploy New Relic app performance management and know exactly what is happening inside your Ruby, Python, PHP, Java, and .NET app Try New Relic at no cost today and get our sweet Data Nerd shirt too! http://p.sf.net/sfu/newrelic-dev2dev _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
