All of lore.kernel.org
 help / color / mirror / Atom feed
From: "Miguel Angel Amador L." <amador@puc.cl>
To: netfilter@lists.netfilter.org
Subject: Re: PPP Routing
Date: Thu, 27 Feb 2003 01:50:04 -0300	[thread overview]
Message-ID: <009101c2de1b$bce34750$7fe753c8@as> (raw)
In-Reply-To: 20030226225616.GA380@tekilla.homeip.net

create the rules for each interface... and applied ppp+ for rules in all
ppp's interfaces,
the rules work when de interfaces are up , in the other case, the rules not
work if the interfaces not exist.

in other Words... Read the How To Filter Packet  (netfilter.samba.org)


Att.
  /===/  Miguel Angel Amador L.  /====/
"la vida me sonrie, o se estara riendo de mi? "

-----BEGIN GEEK CODE BLOCK-----
Version: 3.12
GCM d- s:+ a- C++++ UL+++ P- L+++ E--- W+++ N++ o K- w++
O- M- V- PS+ PE++ Y PGP- t 5 X+++ R !tv b+ DI- D
G++ e- h* r- y*
------END GEEK CODE BLOCK------

----- Original Message -----
From: "Willi Dyck" <wdyck@gmx.net>
To: <netfilter@lists.netfilter.org>
Sent: Wednesday, February 26, 2003 7:56 PM
Subject: Re: PPP Routing


> On Wed, Feb 26, 2003 at 10:59:38AM -0700, Tom Smith wrote:
> > RedHat 7.3 Kernel 2.4.9-31
> > iptables 1.2.5
> >
> > I have a working Firewall/VPN. Problem is that I need to create a
> > seperate set of rules for each ppp# connection. For example, ppp0's
> > ruleset would be:
> >
> > $IPTABLES -A INPUT -i ppp0 -s $INTNET -d $INTNET -j ACCEPT
> > $IPTABLES -A OUTPUT -o ppp0 -s $INTNET -d $INTNET -j ACCEPT
> > $IPTABLES -A FORWARD -i ppp0 -d $INTNET -j ACCEPT
> > $IPTABLES -A FORWARD -o ppp0 -d $INTNET -j ACCEPT
> >
> > Is there a way to dynamically create the ppp# as new connections come
> > and go?
>
> You might try 'ppp+' instead of 'ppp0'. Although it might not be what
> you want, since it will not be loaded dynamically, but it will match
> dynamically for all ppp# interfaces. See the netfilter docs for further
> info. Hope that helps.
>
> Gruß/Regards -- Willi
>
> --
> A Microsoft Certified System Engineer is to information technology as a
> McDonalds Certified Food Specialist is to the culinary arts.
>         Michael Bacarella commenting on the limited value of
certification.
>
>



  reply	other threads:[~2003-02-27  4:50 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-02-26 17:59 PPP Routing Tom Smith
2003-02-26 22:56 ` Willi Dyck
2003-02-27  4:50   ` Miguel Angel Amador L. [this message]
2003-02-27 15:23   ` Tom Smith

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to='009101c2de1b$bce34750$7fe753c8@as' \
    --to=amador@puc.cl \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.