Re: [suse-security] Masquerade & Firewall Problem
I have used several HOW-TO's. I ran SuSEfirewall, and tried the
simplest masquerade:
echo "1" > /proc/sys/net/ipv4/ip_forward
/sbin/ipchains -P forward DENY
/sbin/ipchains -A forward -s 192.168.0.0/24 -j MASQ
A ping causes wvdial.dod to call the ISP, packets pass to and from the
ISP, but I get 100% packet loss.
--- Markus Gaugusch
I am trying to get masquerading to work without success. Maybe you should read the Masquerading-HOWTO, or send your script to the list. ping to the modem p-t-p side fails. from localhost or a machine behind?
bye Markus
-- _____________________________ Markus Gaugusch ICQ 11374583 markus@gaugusch.dhs.org Linux only user
__________________________________________________ Do You Yahoo!? Yahoo! Photos - 35mm Quality Prints, Now Get 15 Free! http://photos.yahoo.com/
Hi Anonymous,
A ping causes wvdial.dod to call the ISP, packets pass to and from the ISP, but I get 100% packet loss.
Is your kernel setup complete enough for ICMP Masquerading ? Peter ---------- CONFIG_IP_MASQUERADE_ICMP: The basic masquerade code described for "IP: masquerading" above only handles TCP or UDP packets (and ICMP errors for existing connections). This option adds additional support for masquerading ICMP packets, such as ping or the probes used by the Windows 95 tracert program. If you want this, say Y.
participants (2)
-
j b
-
Peter Wiersig