Hello, I have a small question for you. My setup : - One server under Debian Wheezy where Shorewall resides - One bridge to allow my LAN (ethernet, wifi, and TV) - Several clients
I want to install a UPnP client on the shorewall box. So I read: http://www.shorewall.net/UPnP.html /etc/upnpd.conf: create_forward_rules = yes forward_rules_append = no forward_chain_name = forwardUPnP prerouting_chain_name = UPnP I defined following interfaces: net ppp0 dhcp,blacklist,tcpflags,nosmurfs,routefilter,logmartians,sourceroute=0,upnp,upnpclient loc br0 dhcp,tcpflags,bridge /etc/default/linux-igd: # External interface name. If undefined then upnpd will not be started. EXTIFACE=ppp0 # Internal interface name. If undefined then upnpd will not be started. INIFACE=br0 ALLOW_MULTICAST=yes /etc/shorewall/rules contains: forwardUPnP net loc /etc/shorewall/policy contains: loc net ACCEPT loc $FW ACCEPT The result is: # route Table de routage IP du noyau Destination Passerelle Genmask Indic Metric Ref Use Iface default * 0.0.0.0 U 0 0 0 ppp0 192.168.1.0 * 255.255.255.0 U 0 0 0 br0 net1lo-bidon.bs * 255.255.255.255 UH 0 0 0 ppp0 224.0.0.0 * 240.0.0.0 U 0 0 0 br0 Incoming connections are dropped: My computer opened the TCP port 61190. I can see dropped packets in syslog. Server's connections are dropped too (several ports used as I opened the client lot of times) You can see a shorewall dump at this location: http://srv-bron.hebergement-pro.org/shorewall_dump.log What should I try to find the root cause? Do you see any error I could have done? Best regards. Jerome Blion. ------------------------------------------------------------------------------ Rapidly troubleshoot problems before they affect your business. Most IT organizations don't have a clear picture of how application performance affects their revenue. With AppDynamics, you get 100% visibility into your Java,.NET, & PHP application. Start your 15-day FREE TRIAL of AppDynamics Pro! http://pubads.g.doubleclick.net/gampad/clk?id=84349351&iu=/4140/ostg.clktrk _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
