/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */



Fuzzy Fox wrote:
> 
> /* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */
> 
> Purple Shirt <[EMAIL PROTECTED]> wrote:
> >
> > >ipchains -P forward DENY
> > >#One IP for each Sun Machine
> > >ipchains -A forward -s 192.168.1.2/32 -j MASQ
> > >ipchains -A forward -s 192.168.1.3/32 -j MASQ
> >
> > 32???? How about 192.168.1.0/24?
> 
> While I agree that it's more typical to masquerade an entire subnet,
> there is nothing inherently wrong with the above setup.  It *should*
> work.  That is, nothing presented here would indicate what would be
> wrong with the setup.  Using IP/32 means that all 32 bits of the IP
> address must match, and evidently this user wants only those two hosts
> to be able to masquerade through the server.
> 
> Given the fact that it should work, I can offer no ideas as to why it
> does not.  All I can think of is that you should check the routes on all
> the hosts involved, to see if they are consistently set up correctly.

...... you know, I don't suggest a whole lot on this list but how
about reversing the order of the lines and see if it still honors
192.168.1.2 just to get a better feel of this problem and all the
variables.

-- 


                     " vivit post funera virtus "
                                 
                  Linuxcare, At the center of Linux.
                      http://www.linuxcare.com                    
                                                     
             Bill Schoolcraft    http://www.wiliweld.com


_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ -- THIS INCLUDES 
UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to