Hi,

I've come up with an issue with the mangle file.
I'm not sure if I'm making a mistake, or if there's a real issue here. Anyway, 
here are my findings.

I noticed that the following is not honored:

MARK(4):P       192.168.210.0/23        0.0.0.0/0       all

whereas this other line IS:

MARK(4):P       192.168.210.0/24,192.168.211.0/24      0.0.0.0/0       all

I've come to this conclusion by watching traffic from a host with IP addr. 
192.168.211.199 out my providers.

When using the /23 netmask, this host was going out the wrong provider.

When using /24, the host's traffic is correctly going through the provider 
marked as 4.

iptables-1.4.21
shorewall-5.1.5
kernel 4.9.34

I guess I can live with that workaround, unless I'm only seeing a side effect.

Has anyone noticed this?

Vieri

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to