> > I forgot to say that this is only the case for packages originating from > > the firewall itself. SNATed packages from the local network are handled > > correctly. > Look carefully at http://www.shorewall.org/MultiISP.html#idp1955662608. > You are missing two entries.
As i've got no public subnet behind the firewall (but outside) I thought this is sufficient: masq: ppp0 192.168.122.0/24 bbb.152.162.192 eth4 192.168.122.0/24 aaa.117.77.218 ppp0 192.168.222.0/24 bbb.152.162.192 eth4 192.168.222.0/24 aaa.117.77.218 ppp0 192.168.223.0/24 bbb.152.162.192 eth4 192.168.223.0/24 aaa.117.77.218 ppp0 10.8.0.0/16 bbb.152.162.192 eth4 10.8.0.0/16 aaa.117.77.218 Axel -- Wir verwenden ausschließlich blaue Elektronen aus biologischem Anbau. ------------------------------------------------------------------------------ DreamFactory - Open Source REST & JSON Services for HTML5 & Native Apps OAuth, Users, Roles, SQL, NoSQL, BLOB Storage and External API Access Free app hosting. Or install the open source package on any LAMP server. Sign up and see examples for AngularJS, jQuery, Sencha Touch and Native! http://pubads.g.doubleclick.net/gampad/clk?id=63469471&iu=/4140/ostg.clktrk _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
