i tried ip addr add dev eth2 205.133.141.42 (eth2 is the outside interface ) now the router itself is responding to the pings rather that forwarding them. my test pings are being routed ( perhaps by static routes ) to the linux router, i can see them enter, be forwarded but not natted, and passed to the outside interface? On Thu, 9 Feb 2006, R. DuFresne wrote: > -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 > > On Wed, 8 Feb 2006, Stephen Beck wrote: > > > well at the moment mo FORWARD table blocks a few virus ports > > and protects a few of my on campus servers. otherwise has a blanket > > Accept at the bottom, so ime not perventing outside connections there. > > but they dont seem to be working across the netmap. should netmap pervent > > outside connections or have I broken it somehow. > > > > > > > did you also do the "ip addr add" stuffs to the extenal nic for the public > addresses? > > > Thanks, > > Ron DuFresne > - -- > ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ > admin & senior security consultant: sysinfo.com > http://sysinfo.com > Key fingerprint = 9401 4B13 B918 164C 647A E838 B2DF AFCC 94B0 6629 > > ...We waste time looking for the perfect lover > instead of creating the perfect love. > > -Tom Robbins <Still Life With Woodpecker> > -----BEGIN PGP SIGNATURE----- > Version: GnuPG v1.2.4 (GNU/Linux) > > iD8DBQFD63w9st+vzJSwZikRAnZyAKCvM5AfOl13Y0+D52qFQQeew1//AACfc+rc > H22i8dY0utPFR7Xe6SK/Rb4= > =PxEn > -----END PGP SIGNATURE----- >