Linux Netfilter discussions
 help / color / mirror / Atom feed
* Re: tunneling and iptables
@ 2004-03-10 13:55 Babar Kazmi
  0 siblings, 0 replies; 7+ messages in thread
From: Babar Kazmi @ 2004-03-10 13:55 UTC (permalink / raw)
  To: netfilter

 
Dear 

I would just like to know if kernel can handle 2000 logical interfaces, 
If some know can comment about this I would be thankful.

Regards 

Babar Kazmi


 > but with my design I will have around 2000~  tunnels created (i know 
 > this sounds crazy).. will the kernel be able to handle this or is this 
 > too much of an overhead .... leaving aside the start up overhead, 
 > during the actual forwarding is there any overhead besides the extra 
 > ip header being attached.... 
> 



^ permalink raw reply	[flat|nested] 7+ messages in thread
* Did MASQUERADE not work ?
@ 2004-03-10  2:05 Kevork
  2004-03-10  2:52 ` tunneling and iptables Hitesh Ballani
  0 siblings, 1 reply; 7+ messages in thread
From: Kevork @ 2004-03-10  2:05 UTC (permalink / raw)
  To: netfilter

Hi !,

This problem is making me crazy ...

All of the sudden, PCs from inside network lost conextion to internet.
After some tcpdump on the linux box, I saw the box was not NATing.
Paquets from inside are going to outside on its original IP source.
The most misterious thing is that this was working some hours ago, from the
first time I set up the box.
No software was installed, no change was acomplished on the box ... nothing.
Iptables script is the same as when it worked.
MASQ line is:
iptables -t nat -A POSTROUTING -s 192.168.250.0/24 -d $internet -j
MASQUERADE

I have 2 versions of kernel, one is out-of-the-box RedHat 9, and the other
is compiled by me.
I treid both, but the porblems persists (before there was not problem).

Has some one, please, some idea or any explanation for this ?.
It's getting me quite crazy ...

Thenk you very much,
Kevork.



^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2004-03-10 13:55 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-03-10 13:55 tunneling and iptables Babar Kazmi
  -- strict thread matches above, loose matches on Subject: below --
2004-03-10  2:05 Did MASQUERADE not work ? Kevork
2004-03-10  2:52 ` tunneling and iptables Hitesh Ballani
2004-03-10  7:16   ` Cedric Blancher
     [not found]   ` <1078902997.2564.18.camel@anduril.intranet.cartel-securite. net>
2004-03-10  8:15     ` Hitesh Ballani
2004-03-10  9:02       ` Cedric Blancher
     [not found]       ` <1078909348.2757.13.camel@anduril.intranet.cartel-securite. net>
2004-03-10  9:38         ` Hitesh Ballani
2004-03-10 10:11           ` Cedric Blancher

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox