Re: IP masquerade problem

Jussi Hamalainen (count@theblah.org)
Wed, 27 Oct 1999 09:13:25 +0300 (EEST)


On Wed, 27 Oct 1999, Paul Rusty Russell wrote:

> RedHat have a modified kernel, which DaveM hacked, but this should be
> OK. Every masq'd connection increments ip_always_defrag.

Whatever. It just looked a bit weird. :)

> tcpdump from the same network as the machine experiencing problems (if
> possible) and a list of your ipchains rules would be appreciated.

I can't give you a tcpdump right now, but here are my ipchains rules:

ipchains -P forward DENY
ipchains -A forward -s 10.66.66.0/24 -j MASQ

Actually I have a firewall, but I tried removing it all but the
problem persists.

I'll send a tcpdump as soon as I can make you one. :P

-=[ Count Zero / TBH - Jussi Hämäläinen - email count@theblah.org ]=-

-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.rutgers.edu
Please read the FAQ at http://www.tux.org/lkml/