From: Joel Newkirk <netfilter@newkirk.us>
To: Chip Upsal <Chip@CyberWolf.com>, netfilter@lists.netfilter.org
Subject: Re: Apache virtualhost not working behind firewall.
Date: Fri, 20 Dec 2002 00:33:33 -0500 [thread overview]
Message-ID: <200212200033.33488.netfilter@newkirk.us> (raw)
In-Reply-To: <3E0274C5.7080000@CyberWolf.com>
On Thursday 19 December 2002 08:39 pm, Chip Upsal wrote:
> I have a windows 2000 server running apache 2.0.43 with virtual hosts
> behind an iptables firewall doing NAT.
> I am running iptables v1.2.5 on a redhat 7.3 server.
> # PWWEB
> #
> $IPTABLES -t nat -A PREROUTING -p TCP -i $INET_IFACE -d $PWWEB_IP
> --dport 80 \
> -j DNAT --to-destination $DMZ_PWWEB_IP
>
> $IPTABLES -t nat -A PREROUTING -p ICMP -i $INET_IFACE -d $PWWEB_IP \
> -j DNAT --to-destination $DMZ_PWWEB_IP
> The problem....
> When the server is connected directly to the internet all works well.
> However, when it is behind the firewall the virtualhost are not
> working (you can only access the default web site.
>
> Furthermore i am getting the following errors when starting iptables;
>
> [root@iptables init.d]# ./iptables restart
> Flushing all current rules and user defined chains: [ OK ]
> Clearing all current rules and user defined chains: [ OK ]
> Applying iptables firewall rules: [ OK ]
> iptables v1.2.5: Unknown arg `--to-destination'
> Try `iptables -h' or 'iptables --help' for more information.
My money is on a failure to load the nat module. Try "insmod iptable_nat"
from a root console, then restart. If that's it, just put it somewhere
at the top of your script.
j
prev parent reply other threads:[~2002-12-20 5:33 UTC|newest]
Thread overview: 3+ messages / expand[flat|nested] mbox.gz Atom feed top
2002-12-20 1:39 Apache virtualhost not working behind firewall Chip Upsal
2002-12-20 3:54 ` Matthew Hellman
2002-12-20 5:33 ` Joel Newkirk [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=200212200033.33488.netfilter@newkirk.us \
--to=netfilter@newkirk.us \
--cc=Chip@CyberWolf.com \
--cc=netfilter@lists.netfilter.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.