Thank you - so I take it there's nothing conceptually wrong with my
approach. It'll be next Wednesday before I can get to the machine again
to take a dump though. In fact for other reasons it looks like we'll
have to do this Internet routing lessons another way, but even so I'd
like to understand this for my own satisfaction.  - Philip

On 27/10/2016 22:57, Tom Eastep wrote:
> On 10/27/2016 2:34 PM, Philip Le Riche wrote:
> > Everything in shorewall.conf I didn't seem to need or fully understand I
> > left as out-of-the-box. MARK_IN_FORWARD_CHAIN is set to no so the
> > default prerouting chain would appear to be correct.
>
> Okay
>
>
> > Does Wireshark cohabit comfortably with Shorewall if I wanted to
> > actually see the packets coming in or going out? I presume it monitors
> > the raw socket rather than going anywhere near the IP stack.
>
> Yes
>
>  Or can I
> > use a LOG action  to show routing decisions, including those in rtrules?
> > (I have limited access to the machine so I'm afraid I can't just go and
> > try it.)
>
> No.
>
>
> If you will send me the output of 'shorewall dump' collected as
> described at http://www.shorewall.org/support.htm#Guidelines, I'll be
> happy to take a look.
>
> -Tom
> >
------------------------------------------------------------------------------
> The Command Line: Reinvented for Modern Developers > Did the
resurgence of CLI tooling catch you by surprise? > Reconnect with the
command line and become more productive. > Learn the new .NET and
ASP.NET CLI. Get your free copy! > http://sdm.link/telerik >
_______________________________________________ > Shorewall-users
mailing list > [email protected] >
https://lists.sourceforge.net/lists/listinfo/shorewall-users >


------------------------------------------------------------------------------
The Command Line: Reinvented for Modern Developers
Did the resurgence of CLI tooling catch you by surprise?
Reconnect with the command line and become more productive. 
Learn the new .NET and ASP.NET CLI. Get your free copy!
http://sdm.link/telerik
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to