Re: kernel2.6.2-3 + iptables/shorewall

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thursday 19 February 2004 06:48 am, Richard Bown wrote:
> Hi
> having a real headach with this
> Running kernel-2.6.2-3mdk patched for win4lin
> iptables 1.2.9-5mdk
> shorewall 1.4.8-3mdk
> modules loaded are :-
> ipt_TOS 2240 0 - Live 0xe197f000
> ipt_REJECT 6464 0 - Live 0xe198e000
> ipt_LOG 5312 0 - Live 0xe198b000
> ipt_state 1728 2 - Live 0xe1985000
> ipt_multiport 1856 0 - Live 0xe1983000
> ipt_conntrack 2304 0 - Live 0xe1981000
> iptable_filter 2624 1 - Live 0xe1932000
> iptable_mangle 2624 0 - Live 0xe18d2000
> iptable_nat 23116 1 ipt_MASQUERADE, Live 0xe18c3000
> ip_conntrack 31120 4 ipt_MASQUERADE,ipt_state,ipt_conntrack,iptable_nat,
> Live 0xe1963000
> ip_tables 16704 10
> ipt_MASQUERADE,ipt_TOS,ipt_REJECT,ipt_LOG,ipt_state,ipt_multiport,ipt_connt
>rack,iptable_filter,iptable_mangle,iptable_nat, Live 0xe1952000
>
>
> now in the 2.4 series kernels if I remember right you could turn /off
> IPV4 forwarding, I hav'nt found this at all in the config file on a
> 2.6.2 kernel.
> So as you guys are more at the iptables end, is anyone successfully
> getting MASQ,& DNAT functional with a 2.6.2 kernel, and maybe on a
> mandrake system :)

As I announced the other day, I am able to run 2.6.2 with a fairly complex 
setup (http://www.shorewall.net/myfiles2.htm) without problems. That is under 
Debian Sarge (although the first 2.6.2 kernel that I successfully tested was 
built on a Mandrake 9.0 box).

-Tom
-- 
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ teastep@xxxxxxxxxxxxx




[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux