Re: configuring iptables for masquerading

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

Angel Tsankov a écrit :
I've configured iptables for masquerading and when some of the masqueraded hosts performs a trace route I get this:

tracert www.abv.bg

MS Windows traceroute ?

Tracing route to www.abv.bg [194.153.145.105]
over a maximum of 30 hops:

 1    17 ms     5 ms     6 ms  194.153.145.105

Trace complete.

Same with any source and destination hosts ?
Does "normal" access (web, ftp...) to the destination host work ?

This looks like the result of a TTL normalization that could be caused by an iptables rule with the TTL target in the 'mangle' table. You can dump the active ruleset with the command 'iptables-save'.

This route is obviously too short. I have attached the /etc/rc.d/rc.iptables file. Could someone tell me what I have misconfigured?

I don't see anything which could cause such behaviour in your script.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux