> > I forgot to say that this is only the case for packages originating from
> > the firewall itself. SNATed packages from the local network are handled
> > correctly.
> Look carefully at http://www.shorewall.org/MultiISP.html#idp1955662608.
> You are missing two entries.

As i've got no public subnet behind the firewall (but outside) I thought this 
is sufficient:

masq:
ppp0    192.168.122.0/24        bbb.152.162.192
eth4    192.168.122.0/24        aaa.117.77.218
ppp0    192.168.222.0/24        bbb.152.162.192
eth4    192.168.222.0/24        aaa.117.77.218
ppp0    192.168.223.0/24        bbb.152.162.192
eth4    192.168.223.0/24       aaa.117.77.218
ppp0    10.8.0.0/16             bbb.152.162.192
eth4    10.8.0.0/16             aaa.117.77.218




Axel

-- 
Wir verwenden ausschließlich blaue Elektronen aus biologischem Anbau.

------------------------------------------------------------------------------
DreamFactory - Open Source REST & JSON Services for HTML5 & Native Apps
OAuth, Users, Roles, SQL, NoSQL, BLOB Storage and External API Access
Free app hosting. Or install the open source package on any LAMP server.
Sign up and see examples for AngularJS, jQuery, Sencha Touch and Native!
http://pubads.g.doubleclick.net/gampad/clk?id=63469471&iu=/4140/ostg.clktrk
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to