Am Donnerstag, 6. Dezember 2012 schrieb Tom Eastep:
> 
> Try adding these rules:
> 
> REDIRECT   zone-of-the-tv:address-of-the-tv  1900
>      udp     port-tv-is-sending-to
> ACCEPT           $FW
> zone-of-the-tv:address-of-the-tv      udp
> 
> -Tom
> You do not need a parachute to skydive. You only need a parachute to
> skydive twice.
> 
> 
> 

I have tried the following rules:

REDIRECT        ext:192.168.178.24      $FW::1900       udp     32410
ACCEPT:info     ext:192.168.178.24      $FW:192.168.178.3       udp     1900


In syslog we have

Dec  7 08:12:17 bitgully kernel: [ 3428.094905] 
Shorewall:ext_dnat:REDIRECT:IN=eth0 OUT= 
MAC=01:00:5e:7f:ff:fa:e8:5b:5b:44:1c:7f:08:00 SRC=192.168.178.24 
DST=239.255.255.250 LEN=51 TOS=0x00 PREC=0x00 TTL=1 ID=0 DF PROTO=UDP 
SPT=46710 DPT=32410 LEN=31 
Dec  7 08:12:22 bitgully kernel: [ 3433.096257] 
Shorewall:ext_dnat:REDIRECT:IN=eth0 OUT= 
MAC=01:00:5e:7f:ff:fa:e8:5b:5b:44:1c:7f:08:00 SRC=192.168.178.24 
DST=239.255.255.250 LEN=51 TOS=0x00 PREC=0x00 TTL=1 ID=0 DF PROTO=UDP 
SPT=43212 DPT=32410 LEN=31 

no incoming packets on udp 1900 are registered


tshark still shows:

 15.004511 192.168.178.24 -> 239.255.255.250 UDP Source port: 44414  
Destination port: 32410
 16.004916 192.168.178.24 -> 239.0.0.250  UDP Source port: 50273  Destination 
port: 32414

The DNLA server cannot be found.

Regards


Harry

------------------------------------------------------------------------------
LogMeIn Rescue: Anywhere, Anytime Remote support for IT. Free Trial
Remotely access PCs and mobile devices and provide instant support
Improve your efficiency, and focus on delivering more value-add services
Discover what IT Professionals Know. Rescue delivers
http://p.sf.net/sfu/logmein_12329d2d
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to