On 6/16/2015 12:28 PM, Rob Ogle wrote:
>
> Unable to make voip calls using Shoretel phone system when separated
> by LEAF firewall (uClibc-0.9.33.2) running Shorewall.
>
> Phone on 192.168.4.0 network cannot call phone on 192.168.10.0
> network, and vice versa.
>
>  
>
> Calls can only be made if the masq file is misconfigured.
>
>  
>
> Example: Browsing, pinging, email works- voip does not.
>
>      Internal: 192.168.4.0
>
>      External: 192.168.10.0
>
>      Masq on eth0 is 192.168.4.0
>
>  
>
>  
>
> Example: VOIP works- Browsing, pinging, email works does not.
>
>      Internal: 192.168.4.0
>
>      External: 192.168.10.0
>
>      Masq on eth0 is 192.168.99.
>
I don't understand what you are saying -- what exactly does "Masq on
eth0 is 192.168.99" mean? What are the masq file entries in the two cases?

The output of "shorewall dump" in both configurations would also be
helpful (send them to me privately if you like).

>  
>
> Have already referenced Shorewall FAQ #77.
>
>  
>
> For some reason, the commands do not work.
>
> rmmod nf_nat_sip
>
> rmmod: can't unload 'nf_nat_sip': unknown symbol in module, or unknown
> parameter
>
That looks like a bug in the kernel or in rmmod.
>
>  
>
> Adding the lines to the don’t load section results in this message
> when restarting shorewall.
>
> /sbin/shorewall: /etc/shorewall/shorewall.conf: line 151:
> nf_conntrack_sip: not found
>
> /sbin/shorewall: /etc/shorewall/shorewall.conf: line 151:
> nf_conntrack_sip: not found
>
You are doing something wrong there. Please show us exactly what your
DONT_LOAD setting looks like.
>
>  
>
> However, when doing an lsmod, it shows
>
> “nf_conntrack_sip 17949 2 - Live 0xf89c8000”
>
>  
>
>
-Tom

-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to