From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Remigiusz Kosztowny" Subject: COUNTING in FORWARD. Date: Thu, 12 Dec 2002 16:38:49 +0100 Sender: linux-admin-owner@vger.kernel.org Message-ID: <003301c2a1f4$91578780$bea83050@kacza> Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: List-Id: Content-Type: text/plain; charset="us-ascii" To: linux-admin@vger.kernel.org Hello. I have problem with 2.4.20 and 2.4.21-pre1 Counting in FORWARD rule don't work. For example when i set: iptables -N get-http iptables -N put-http iptables -I FORWARD -p tcp -o eth0 -s xx.xx.xx.0/24 --dport 80 -j put-http iptables -I FORWARD -p tcp -o eth1 -d xx.xx.xx.0/24 --sport 80 -j get-http This not work, because: [root@bridge root]# iptables -xvnL FORWARD | head -n 3 Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) 0 0 get-http tcp -- * eth1 0.0.0.0/0 xx.xx.xx.0/24 tcp spt:80 0 0 put-http tcp -- * eth0 xx.xx.xx.0/24 0.0.0.0/0 tcp dpt:80 With 2.4.19 everything is OK. I have bridge with 4 PC ethernet cards, iptables v1.2.7a Please, help me. -- Remigiusz Kosztowny casper@IRCNet PGP Key ID: 0x08495721 http://www.alfa-system.pl/~kacza/kacza.asc [ When I Die, Bury Me Upside Down, So The Wolrd Can KISS MY ASS. ]