/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */ Posted previously about not being able to get gateway or masqued machines running with: http://members.home.net/ipmasq/ipmasq-HOWTO-1.79-6.html#Strong-IPFWADM-Rules ets Had more success with the following: ----------------------------------- Was wondering if anyone out there familiar with TrinityOS firewall rules could help me out. I was able to get simple ipfwadm rules working but not the strong rules. (If you're wondering why I don't use ipchains, it's because I'm using MkLinux Pre-R1 on a Powermac 6100/60 -- can't use ipchains and no other Linux runs on this machine). When I connect with ppp via the strong ruleset the Linux gateway machine connects fine, but the masqued machine on the net is locked out (although pinging from the masqued machine to the gateway works). Also, when trying to connect to the Internet from the masqued machine, I see activity on my modem. So it seems requests are going out but nothing's coming back in. Here's some test info: Output from ifconfig: ppp0 Link encap:Point-to-Point Protocol inet addr:168.191.84.50 P-t-P:168.191.84.2 Mask:255.255.255.0 UP POINTOPOINT RUNNING MTU:576 Metric:1 RX packets:59 errors:0 dropped:0 overruns:0 frame:0 TX packets:148 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 This is the debugging info the TrinityOS rc.firewall script puts out to /tmp/rc.firewall.dump. For some reason the last 2 lines (secondarydns and sucurehost) are missing. Also the $extbroad and $dgw variables aren't getting set. Probably because the $4 and $2 variables aren't returning anything: ----------------------------------------------------- Loopback IP: 127.0.0.1 Internal interface name: eth0 Internal interface IP: 192.168.0.2 Internal interface net: 192.168.0.0 ----------------------------------------------------- External interface name: External interface IP: 168.191.84.50 External interface broadcast IP: .255 External interface default gateway: Internet IP to be portforwarded to: ----------------------------------------------------- Output from netstat -nr: Kernel IP routing table Destination Gateway Genmask Flags MSS Window irtt Iface 168.191.84.2 0.0.0.0 255.255.255.255 UH 576 0 0 ppp0 192.168.0.0 0.0.0.0 255.255.255.0 U 1500 0 0 eth0 127.0.0.0 0.0.0.0 255.0.0.0 U 3584 0 0 lo 0.0.0.0 168.191.84.2 0.0.0.0 UG 576 0 0 ppp0 _______________________________________________ Masq maillist - [EMAIL PROTECTED] Admin requests can be handled at http://www.indyramp.com/masq-list/ -- THIS INCLUDES UNSUBSCRIBING! or email to [EMAIL PROTECTED] PLEASE read the HOWTO and search the archives before posting. You can start your search at http://www.indyramp.com/masq/ Please keep general linux/unix/pc/internet questions off the list.
