Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Antony Stone <Antony@Soft-Solutions.co.uk>
To: 'Netfilter' <netfilter@lists.netfilter.org>
Subject: Re: How to invert more than one destination network?
Date: Mon, 1 Mar 2004 16:25:49 +0000	[thread overview]
Message-ID: <200403011625.49547.Antony@Soft-Solutions.co.uk> (raw)
In-Reply-To: <00a101c3ffa8$b9e07730$c800a8c0@cyclelogic.com>

On Monday 01 March 2004 4:17 pm, Gonzalo Parra wrote:

> Is it that simple?
>
> I had the thought that that would make IPTABLES to masquerade everithing...

You are correct.   See my previous posting for a suggestion on how to do it.

Antony.

> I mean: first rule will say MASQUERADE everything but 192.168.20.0/26 and
> the seccond one will say MASQUERADE everything but 192.168.40.0/26 so every
> IP (even those inside those networks) will always find a rule to go
> MAQUERADED...
>
> -----Original Message-----
> From: Alexis [mailto:alexis@attla.net.ar]
> Sent: Lunes, 01 de Marzo de 2004 12:08 p.m.
> To: gparra@cyclelogic.com
> Cc: Netfilter
> Subject: Re: How to invert more than one destination network?
>
>
> add a new line with the second network :)
>
> On Mon, 2004-03-01 at 12:58, Gonzalo Parra wrote:
> > Hi
> >
> > I have MASQUERADE in a box as a gateway using IPTABLES and I am using
> > that box also for VPN... so for it to work I cant masquerade thaffic
> > that goes to the other side of the VPN...
> >
> > This works for me:
> >
> > IPTABLES -t nat -A POSTROUTING -o $EXTIF -d \! 192.168.20.0/26 -j
> > MASQUERADE
> >
> > but now I have another network at the other side of the VPN
> > (192.168.40.0/26), so how can I invert two networks in the -d???
> >
> > Thanks,
> >
> > Gonzalo Parra
> > Network Administrator
> > Tel: +58 (212) 265-5330
> > Cel: +58 (414) 240-4054
> > Caracas, VE
> > .....................................

-- 
A: Because it messes up the order in which people normally read text.
Q: Why is top-posting such a bad thing?
A: Top-posting.
Q: What is the most annoying thing on usenet and in e-mail?

                                                     Please reply to the list;
                                                           please don't CC me.



  reply	other threads:[~2004-03-01 16:25 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-03-01 15:58 How to invert more than one destination network? Gonzalo Parra
2004-03-01 16:07 ` Alexis
2004-03-01 16:17   ` Gonzalo Parra
2004-03-01 16:25     ` Antony Stone [this message]
2004-03-01 16:18 ` Antony Stone

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=200403011625.49547.Antony@Soft-Solutions.co.uk \
    --to=antony@soft-solutions.co.uk \
    --cc=netfilter@lists.netfilter.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox