Hey Everyone,

I just wanted to let you know that I posted a new, updated, IP-MASQ-HOWTO.
Its still not the final 2.00 version but it has almost everything in
it.  Here is the Change log but there will be more to come:


In cronological order


--
TO do - HOWTO: 
--------------
Add the scripted IPMASQADM example to the Forwarders section. Also confirm the
syntax. 

Add a little section on having multiple subnets behind a MASQ server 

Confirm the strong IPCHAINS ruleset and make sure it is consistant with the
IPFWADM ruleset 


TO DO - WWW page: 
-----------------
Update all PPTP urls from lowrent to
ftp://ftp.rubyriver.com/pub/jhardin/masquerade/ip_masq_vpn.html 
 
Update the PPTP patch on the masq site 

Update the portfw FTP patch 

Clean the thing up!


Changes from 1.72 to 1.75 - 6/19/99 
-----------------------------------
Fixed the quake module port setup order for the weak IPFWADM & IPCHAINS ruleset
and the strong IPFWADM ruleset as well. 

Added a user report about port forwarding ICQ 4000 directly in and using ICQ's
default settings WITHOUT enabling the "Non-Sock" proxy setup. 

Updated the URLs for the IPMASQADM tool 

Added references to Taro Fukunaga, [EMAIL PROTECTED] for his MkLinux port
of the HOWTO 

Updated the blurb about Sonny Parlin's FWCONFIG tool to note new IPCHAINS
support 

Noted that Fred Vile's patch for portfw'ed FTP access is ONLY available for the
2.0.x kernels 

Updated the 2.2.x kernel step with a few clarifications on the Experiemental
tag 

Added Glen Lamb's name to the credits for the LooseUDP patch 

Added a clarification on installing the LooseUDP patch that it should use "cat"
for non-compressed patches. 

Fixed a typo in the IPAUTO FAQ section 

I had the DHCP client port numbers reversed for the IPFWADM and IPCHAINS
rulesets. The order I had was if your Linux server was a DHCP SERVER. 

Added explict /sbin path to all weak and strong ruleset examples. 

Made some clarifications in the strong IPFWADM section regarding Dynamic IP
addresses for PPP and DHCP users. I also noted that the strong rulesets should
be re-run when PPP comes up or when a DHCP lease is renewed. 

Added reference in the 2.2.x requirements, updated the ICQ FAQ section, and
added Andrew Deryabin to credits section for his ICQ MASQ module. 

Added some clarifcation in the FAQ section why the 2.1.x and 2.2.x kernels went
to IPCHAINS. 

Added a little FAQ section on Microsoft File/Print/Domain services (Samba)
through a MASQ server. I also added a URL to a Microsoft Knowledge base
document for more details. 

Added clarification in the FAQ section that NO Debian distribution supports IP
masq out of the box. 

Updated the supported MASQ distributions in the FAQ section. 

Added to the Aliased NIC section of the FAQ that you CANNOT masq out of an
aliased interface. 

Wow.. never caught this before but the "ppp-ip" variable in the strong ruleset
section is an invalid variable name! It has been renamed to "ppp_ip" In both
the IPFWADM and IPCHAINS simple ruleset setup areas, I had a commented out
section on enabling DHCP traffic. Problem is, it was below the final reject
line! Doh! I moved both up a section. 

In the simple IPCHAINS setup, the #ed out line for DHCP users, I was using the
IPFWADM "-W" command instead of IPCHAINS's "-i" parameter. 

Added a little blurb to the Forwarders section the resolution to the famous
"ipfwadm: setsockopt failed: Protocol not available" error. This also includes
a little /proc test to let people confirm if IPPORTFW is enabled in the kernel.
I also added this error to a FAQ section for simple searching. 

Added a Strong IPCHAINS ruleset to the HOWTO (finally)

Added a FAQ section explaining the "kernel: ip_masq_new(proto=UDP): no free
ports." error. 

Added an example of scripting IPMASQADM PORTFW rules 

Updated a few of the Linux Documentation Project (LDP) URLs 

Added Quake III support in the module loading sections of all the rc.firewall
rulesets. 


.----------------------------------------------------------------------------.
|  David A. Ranch - Linux/Networking/PC hardware         [EMAIL PROTECTED]  |
!----                                                                    ----!
`----- For more detailed info, see http://www.ecst.csuchico.edu/~dranch -----'


_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
http://tiffany.indyramp.com/mailman/listinfo/masq
Admin requests can be handled by web (above) or [EMAIL PROTECTED]

Reply via email to