On 5/11/2016 12:42 AM, Kade W. Hampson wrote:
>  
> Hi guys,
> I am having some issues with DNAT on my firewall.
> I have a couple virtual VLANed interfaces on the firewall and the only
> one that seems to DNAT is the eth1 interface.
> This is what my rules look like:
> DNAT    net    loc:192.168.0.22    udp    9987
> DNAT    net    loc:192.168.0.22    tcp    10011
> DNAT    net    loc:192.168.0.22    tcp    30033
> DNAT    net    V100:192.168.100.20    tcp    992
> DNAT    net    V100:192.168.100.20    tcp    1194
> DNAT    net    V100:192.168.100.20    tcp    5555
> DNAT    net    V100:192.168.100.20    tcp    22
>  
> LOC=eth1 <-- Works
> V100=eth1.100 <-- Doesn't work
>  

Please follow the DNAT troubleshooting tips in Shorewall FAQs 1a and 1b
and report the results.

Thanks,
-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Mobile security can be enabling, not merely restricting. Employees who
bring their own devices (BYOD) to work are irked by the imposition of MDM
restrictions. Mobile Device Manager Plus allows you to control only the
apps on BYO-devices by containerizing them, leaving personal data untouched!
https://ad.doubleclick.net/ddm/clk/304595813;131938128;j
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to