SuSEfirewall 4.2 - FW_FORWARD_MASQ_TCP
Hello! I don't understand the following: --snip-- # Hint: if FW_DEV_MASQ is set to the external \ interface you have to set # FW_FORWARD_* from internal to DMZ for the \ service as well! --snip-- (It _is_ the ext. i.f. ...) I want to use --snip-- FW_FORWARD_MASQ_TCP="0.0.0.0/0,192.168.0.20,80" --snip-- , but it doesn't work :( Can someone please reveal the secret of Marc's sentence? ;) Thanks in advance. Regards, Mit freundlichen Grüssen Wolfram Schlich * X-Media Consulting / Itabonn Adenauerallee 113 **** 53113 Bonn **** Germany Phone: +49.228.5388075 ** Fax: +49.228.5388031
Dear All On Sunday 21 January 2001 23:50, you wrote:
I don't understand the following:
--snip-- # Hint: if FW_DEV_MASQ is set to the external \ interface you have to set # FW_FORWARD_* from internal to DMZ for the \ service as well! --snip-- (It _is_ the ext. i.f. ...)
Oh, I thought I was alone :) My problem is that I can't get the firewall to allow me to forward packets up to the net. I've put a line into /etc/ppp/ip-up which says ....... /sbin/ipchains -A forward -s xxx.xxx.x.x/xx -j MASQ and that temporarily allowed me to send mail and view web pages. Later on this didn't work and I've had to remove the firewall again. So, I might need some help from SuSE directly. Thanks -- Richard
At 11:59 PM 21/01/2001 +0000, you wrote:
Dear All
On Sunday 21 January 2001 23:50, you wrote:
I don't understand the following:
--snip-- # Hint: if FW_DEV_MASQ is set to the external \ interface you have to set # FW_FORWARD_* from internal to DMZ for the \ service as well! --snip-- (It _is_ the ext. i.f. ...)
Oh, I thought I was alone :) My problem is that I can't get the firewall to allow me to forward packets up to the net. I've put a line into /etc/ppp/ip-up which says .......
/sbin/ipchains -A forward -s xxx.xxx.x.x/xx -j MASQ
and that temporarily allowed me to send mail and view web pages. Later on this didn't work and I've had to remove the firewall again. So, I might need some help from SuSE directly.
OK, I'm going to write a SuSE-Firewall howto, but I won't have time for at least the next 5 or 6 hrs... I will try to get this out asap, as it seems alot of people are having problems.. Cheers --- Nix - nix@susesecurity.com SuSE-Security FAQ Maintainer http://www.susesecurity.com
participants (3)
-
Nix
-
Richard
-
Wolfram Schlich