[LARTC] Routing tables and netfilter

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi Guys,

A couple of days ago I sent a mail here regarding routing browsing
packets to a different gateway. Well here's an update which I believe
will shed more light on the problem.

I am now marking all TCP and udp packets on a test box with a one.

I then route these packets via a routing table through an ISDN device. 

If I delete this route I instantly get destination net unreachable from
the client side (my linux box)

When I add it back in, it just sits and eventually times out.

If I do a tcpdump on the server that I am trying to telnet I can see
that it's getting the packets that I send to establish the connection
and is sending the SYN packets back, but yet my side still just sits. It
almost appears that it doesn't work with MASQ. 

Now before everyone starts nailing me about MASQ as per
"IMPORTANT: We received a report that MASQ and SNAT at least collide
with marking packets." and "Turn off the reverse path filter to make it
work properly." - I have done that and I get the same results.

It appears that the packets are being dropped somewhere.

It feels like I am missing something really small and arb.

Any help would be appreciated
-- 
   Riaan Annandale
   Client Services: Corporate Support Engineer
   TISCALI (PTY) LTD
   THE COMMUNICATION COMPANY
   42 Wierda Road West, Wierda Valley, Sandton
   Mobile :
   Office :  +27 11 286 5014
   Fax :
   E-Mail : Riaan.Annandale@xxxxxxxxxxxxxx
   http://www.tiscali.co.za
   Disclaimer: This email is considered a business record and is
   therefore property of Tiscali. This email, and any files transmitted
   with it are confidential and are intended solely for the use of the
   individual or entity to whom they are addressed. This communication
   represents the originator's personal views and opinions, which do not
   necessarily reflect those of Tiscali. If you are not the original
   recipient or the person responsible for delivering the email to the
   intended recipient, be advised that you have this email in error, and
   that any use, dissemination, forwarding, printing, or copying of this
   email is strictly prohibited. If you received this email in error,
   please immediately notify disclaimer@xxxxxxxxxxxxxxx

Attachment: pgp00143.pgp
Description: PGP signature


[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux