On Thu, 2002-10-31 at 17:29, Dale Bewley wrote:

> Well, you didn't put in default deny policies and logging of packets that
> hit the end like I suggested. If you did, I'm guessing you might see the
> pkts coming from the windows http server being denied. Something is
> keeping those Acks from getting back to the client. And it is either 1.
> the windows box is not sending packets back to the router (you can check
> with tcpdump) or 2. the router is not forwarding the Acks back to the
> client.

Dale:

I did put the default deny policies; the lines that I pasted in my
previous e-mail were only samples (relevant parts?) of the iptables
configuration, not the whole file. I didn't want to fill the list with
messages, but I think that now I did :/.

I will try the tcpdump solution, altough there are *many* computers in
the private network and it would be difficult to find anything useful
there. I guess the LOG part from the private specific IP would be better
information, but I am not sure how to do that.

> I don't think you've read the docs.

I have read a lot of docs from netfilter page, but still can't
understand completely iptables.

ipchains is a lot different, I miss it :(

Thank you for your help.

-- 
ˇSé libre, usa software libre!
Be free, use free software!
http://www.imoqland.com/




Reply via email to