Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: [tlug] Any iptables wizards around?
- Date: Fri, 25 Mar 2011 20:09:15 +0900
- From: Andreas Kieckens <akieckens@example.com>
- Subject: Re: [tlug] Any iptables wizards around?
- References: <4D8C3C8E.5020800@example.com> <20110325091330.4263451d.attila@example.com> <4D8C6B75.2090605@example.com> <20110325112120.060a8884.attila@example.com>
- User-agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.15) Gecko/20110307 Lightning/1.0b2 Lanikai/3.1.9
On 03/25/2011 07:21 PM, Attila Kinali wrote:On Fri, 25 Mar 2011 19:16:21 +0900 Andreas Kieckens<akieckens@example.com> wrote:I tried with the fake ARP daemon but that didn't work either. Neither did setting the dnat rule manually. Responses arrive now but still aren't forwarded. I've already set the forward policy to accept but still no luck. There must be some small setting somewhere that I'm missing.Then give us a bit more info: Output of ifconfigRelevant parts are: br0 Link encap:Ethernet HWaddr 18:a9:05:55:73:fe inet addr:192.168.2.25 Bcast:192.168.2.255 Mask:255.255.255.0 inet6 addr: fe80::1aa9:5ff:fe55:73fe/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:6657290 errors:0 dropped:0 overruns:0 frame:0 TX packets:2591802 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:5447726916 (5.4 GB) TX bytes:2753670052 (2.7 GB) eth0 Link encap:Ethernet HWaddr 18:a9:05:55:73:fe UP BROADCAST RUNNING PROMISC MULTICAST MTU:1500 Metric:1 RX packets:8769819 errors:0 dropped:0 overruns:0 frame:0 TX packets:4616109 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:7024171007 (7.0 GB) TX bytes:2705223746 (2.7 GB) Interrupt:19 tap0 Link encap:Ethernet HWaddr 6e:62:3b:dd:b4:29 UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:665 errors:0 dropped:0 overruns:0 frame:0 TX packets:32833 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:500 RX bytes:79516 (79.5 KB) TX bytes:2354763 (2.3 MB) tap1 Link encap:Ethernet HWaddr 26:42:1a:f2:05:40 inet6 addr: fe80::2442:1aff:fef2:540/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:11 errors:0 dropped:0 overruns:0 frame:0 TX packets:24055 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:500 RX bytes:798 (798.0 B) TX bytes:1708317 (1.7 MB)Output of route -nKernel IP routing tableDestination Gateway Genmask Flags Metric Ref Use Iface 192.168.6.0 0.0.0.0 255.255.255.0 U 0 0 0 br1000 192.168.5.0 0.0.0.0 255.255.255.0 U 0 0 0 br0 192.168.4.0 0.0.0.0 255.255.255.0 U 0 0 0 br0 192.168.2.0 0.0.0.0 255.255.255.0 U 0 0 0 br0 192.168.10.0 0.0.0.0 255.255.255.0 U 0 0 0 br100 192.168.122.0 0.0.0.0 255.255.255.0 U 0 0 0 virbr0 0.0.0.0 192.168.5.1 0.0.0.0 UG 100 0 0 br0 0.0.0.0 192.168.4.1 0.0.0.0 UG 100 0 0 br0 0.0.0.0 192.168.2.1 0.0.0.0 UG 100 0 0 br0Note: I got rid of the filtering rules to make sure they weren't messing anything up.Output of iptables -L -nvChain INPUT (policy ACCEPT 2516 packets, 345K bytes)pkts bytes target prot opt in out source destinationChain FORWARD (policy ACCEPT 9631 packets, 2663K bytes)pkts bytes target prot opt in out source destination 9603 2655K LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4Chain OUTPUT (policy ACCEPT 1107 packets, 373K bytes)pkts bytes target prot opt in out source destinationOutput of iptables -L -nv -t natChain INPUT (policy ACCEPT 2516 packets, 345K bytes)pkts bytes target prot opt in out source destinationChain FORWARD (policy ACCEPT 9631 packets, 2663K bytes)pkts bytes target prot opt in out source destination 9603 2655K LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 4Chain OUTPUT (policy ACCEPT 1107 packets, 373K bytes)pkts bytes target prot opt in out source destinationBTW: Please do not top post Attila Kinali
- References:
- [tlug] Any iptables wizards around?
- From: Andreas Kieckens
- Re: [tlug] Any iptables wizards around?
- From: Attila Kinali
- Re: [tlug] Any iptables wizards around?
- From: Andreas Kieckens
- Re: [tlug] Any iptables wizards around?
- From: Attila Kinali
Home | Main Index | Thread Index
- Prev by Date: Re: [tlug] Any iptables wizards around?
- Next by Date: [tlug] TLUG list policy (was: Any iptables wizards around?)
- Previous by thread: Re: [tlug] Any iptables wizards around?
- Next by thread: Re: [tlug] Any iptables wizards around?
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links