I had a similar issue with Debian 12 ,,, Discovered this works in the snat file:
MASQUERADE enp38s0 enp36s0 Might be worth a try. Nigel. On Wed, Feb 14, 2024 at 3:22 AM <rcor...@edos.cl> wrote: > Hi! > > is a simple scenario with 2 NIC, WAN and LAN. > > LAN-> WAN with full access > > same config with shorewall 5.1 dont work with 5.2 > > snat file contain: > > MASQUERADE 192.168.1.0/24 enp32s0f0 > > shorewall.conf change startup=YES > > some command to try debug why work with 5.1 but same config dont with > 5.2? > > Thx > > El 2024-02-13 18:49, Tuomo Soini escribió: > > On Tue, 13 Feb 2024 21:15:52 +0000 > > Rodrigo Araujo <araujo...@gmail.com> wrote: > > > >> It works fine here with rpms rebuilt from the Fedora src.rpm packages > >> and iptables-legacy packages from EPEL. > >> > >> Ensure you remove (or at least disable and stop) firewalld, and also > >> make sure the ipset package is installed. Other than that, I'm not > >> remembering anything. > > > > It also works very well with iptables-nft (so without iptables-legacy). > > > _______________________________________________ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-users > -- *Be Safe Out There.* *Nigel Aves* p.s. We have many fine video podcasts on YouTube. These are all interview-based, and pretty well cover every subject. All our shows are here *Captn's Lounge Studios <https://tinyurl.com/2vurn3yw>* Please Subscribe to *CIT* *Come be interviewed: At The Captn's Lounge. <https://youtu.be/paL0uRkZ69o?si=pUm3pWe8hAXScdC8>*
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users