From mboxrd@z Thu Jan 1 00:00:00 1970 From: "Bassam A. Al-Khaffaf" Subject: How to DNAT the only NetBios broadcast traffic (03:00:00:00:00:01)?? Date: Mon, 14 Jun 2004 12:08:23 +0800 Sender: netfilter-admin@lists.netfilter.org Message-ID: <001b01c451c5$3c734150$1d01a8c0@palettemm.com> Reply-To: Mime-Version: 1.0 Content-Type: multipart/alternative; boundary="----=_NextPart_000_001C_01C45208.4A968150" Return-path: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: To: netfilter@lists.netfilter.org This is a multi-part message in MIME format. ------=_NextPart_000_001C_01C45208.4A968150 Content-Type: text/plain; charset="Windows-1252" Content-Transfer-Encoding: quoted-printable Dear All, I am implementing a Linux box gateway that lunch my own firewall (I wrote my own iptables rules). The gateway connects two LANs, LAN1: 192.168.1.0/24 and LAN2: 192.168.0.0/24. LAN1 contains a windows 2000 server domain controller IP: 192.168.1.231 and LAN2 contains my clients based on windows xp. =20 In fact I got stuck on how to forward ONLY and ONLY the NETBIOS broadcast traffic (03:00:00:00:00:01) from any machine on LAN2 to the domain controller on LAN1. Take note that the NETBIOS traffic is carried on IEEE 802.3 Ethernet. =20 I wrote the following iptable rule, but here all the traffic will be directed from LAN2 to the domain controller on LAN1 Iptables =96t nat =96A PREROUTING =96I eth1 =96j DNAT =96to-destination 192.168.1.231 =20 So can anybody help me on how can I forward the traffic with destination MAC address 03:00:00:00:00:01 from LAN2 to the domain controller (192.168.1.231) on LAN1? =20 Thanks for your support =20 Regards Bassam =20 =20 --- Outgoing mail is certified Virus Free. Checked by AVG anti-virus system (http://www.grisoft.com). Version: 6.0.516 / Virus Database: 313 - Release Date: 9/1/2003 =20 ------=_NextPart_000_001C_01C45208.4A968150 Content-Type: text/html; charset="Windows-1252" Content-Transfer-Encoding: quoted-printable

Dear All,

   = I am implementing a Linux box gateway that lunch my own firewall (I wrote my = own iptables rules). The gateway connects two LANs, = LAN1: 192.168.1.0/24 and LAN2: 192.168.0.0/24. LAN1 contains a windows 2000 = server domain controller IP: 192.168.1.231 and LAN2 contains my clients based on = windows xp.

 

In fact I got stuck on how to forward ONLY and ONLY = the NETBIOS broadcast traffic (03:00:00:00:00:01) from any machine on LAN2 to the domain controller on LAN1. Take note that the = NETBIOS traffic is carried on IEEE 802.3 Ethernet.

 

I wrote the following iptable rule, but here all the traffic will be directed from LAN2 to the domain controller on LAN1

Iptables =96t nat =96A PREROUTING =96I eth1 =96j = DNAT =96to-destination 192.168.1.231

 

So can anybody help me on how can I forward the = traffic with destination MAC address 03:00:00:00:00:01 from LAN2 to the domain controller (192.168.1.231) on = LAN1?

 

Thanks for your support

 

Regards

Bassam<= font size=3D2 face=3DArial>

 

 


---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.516 / Virus Database: 313 - Release Date: 9/1/2003

------=_NextPart_000_001C_01C45208.4A968150--