-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 on Sat, Jul 03, 2004 at 08:18:36PM -0500, Gregory Nowak wrote: > It's amazing how after a while of working on something and not getting > anywhere, you start to miss things said in the man page (smile). I'm > still surprised that didn't give me any errors, or maybe it did, and I > didn't notice them, or I simply forgot to rerun the firewall script > after re-editing it the last time. > > Anyway, I now have: > > iptables -t nat -A OUTPUT -o eth0 -p tcp --dport 25 -j DNAT > --to-destination aaa.bbb.ccc.ddd This looks fine and doesn't have the dash someone else mentioned. > and when I run my script, I get at that line: > > iptables: Invalid argument > > which as you can see, is an extremely useful error message, whoever > wrote it, absolutely out did themselves in the creativity > department (grrrrrr). Yeah don't you just love "informative" error messages like that. > BTW, I am substituting aaa.bbb.ccc.ddd with a correct IP address in > the actual script, so that can't be the problem. You might ask on the netfilter list which I don't have the address to right off hand my very limited understand of iptables has reached its end. - -- "Debugging is twice as hard as writing the code in the first place. Therefore, if you write the code as cleverly as possible, you are, by definition, not smart enough to debug it." - Brian W. Kernighan Thomas Stivers e-mail: stivers_t at tomass.dyndns.org -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFA6A4C5JK61UXLur0RAhx4AJ99pWdT3W1B0pzvWdhZqw0KjzSwFACcCeV1 Q3nAVqDp9Vc6W/sUyCeu8Pk= =z+PC -----END PGP SIGNATURE-----