Linux Netfilter discussions
 help / color / mirror / Atom feed
From: SBlaze <dagent.geo@yahoo.com>
To: nf <netfilter@lists.netfilter.org>
Subject: Re: CnC General and ipitables woes. Need HELP PLS!
Date: Thu, 17 Apr 2003 10:15:49 -0700 (PDT)	[thread overview]
Message-ID: <20030417171549.19806.qmail@web40208.mail.yahoo.com> (raw)
In-Reply-To: <se9e77b9.047@michiganfamilyresources.org>

I don't believe the problem lies in iptables really. What I think the culprit
is ....is the game makers are not adhearing to TCP/IP standards. Now I'm no
guru on TCP/IP or even more to the case UDP which is what games seem to use. I
think if the makers of Counter Strike can get it right then so should the
others. I had NO problem routing it to internal machines.

That being said I don't think everyone should be left in the cold. If iptables
is to be a real world firewalling soloution... it's going to have to work with
the good and bad implimentations of programinng/TCP/IP stacks etc. So like I
had mentioned before I think some sort of connection tracking module will be
needed... unfortionally I don't know how to program :{{

Now I must reply to the other message I got from Sassan... heh stay tuned!


--- Bret Holbrook <bholbrook@michiganfamilyresources.org> wrote:
> I also had the same issue with CnC and there is an .ini file with a port
> over-ride in it, but adjusting it produced no successful result.  I am
> also struggling with NWN.  After putting all the appropriate prerouting
> commands in as you did with all the ports they suggest, it still does
> not work.  There have been many other games I've struggled with also.  I
> have actually only been able to get a fraction of them working.  It
> seems by the time I get the rules working and am done scouring the
> internet for help, we are playing a different game :).  I am considering
> just plugging my dedicated linux server into the internet, setting up
> basic masq for my internal pc's to surf, burning an image of the HD, and
> leaving it wide open to attack from the internet.  If some kid wants to
> run a newsgroup server off it, fine, as long as I can play my video
> games with my buddies in college.  Setting up basic Iptables was no
> sweat, this more advanced routing for video games and such is extremely
> complex to the un-learned.
> 
> >>> "Sascha Reissner" <sascha.reissner@toxicnet.de> 04/16/03 10:53PM
> >>>
> From: "SBlaze" <dagent.geo@yahoo.com>
> 
> [...]
> 
> > So my question is... is some sort of con. tracking mod needed? Anyone
> know
> > anything about this problem? Thanks for your time and help anyone
> 
> [...]
> 
> Those kind of games tend to include the IP address of the "gaming"
> machine
> withing the payload of their datapackets.
> 
> As i don't know that game i can just tell you that you might want to
> take a
> look into .ini files or parameters for the game to override that
> behaviour.
> 
> Some games allow players via parameter to set a different ip that will
> get
> included into the data payload.
> 
> Greets,
> Sascha
> 
> 
> 
> 


=====
"No touchy NO TOUCHY! Emperor Kuzko -=Emperor's New Groove=-"

__________________________________________________
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo
http://search.yahoo.com


  reply	other threads:[~2003-04-17 17:15 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-04-17 13:45 CnC General and ipitables woes. Need HELP PLS! Bret Holbrook
2003-04-17 17:15 ` SBlaze [this message]
  -- strict thread matches above, loose matches on Subject: below --
2003-04-17  0:58 SBlaze
2003-04-17  2:53 ` Sascha Reissner
2003-04-17 17:14   ` SBlaze

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20030417171549.19806.qmail@web40208.mail.yahoo.com \
    --to=dagent.geo@yahoo.com \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox