From mboxrd@z Thu Jan 1 00:00:00 1970 From: Frank Gruellich Subject: Re: Leaking ICMP and UDP packets Date: Mon, 19 Apr 2004 18:31:59 +0200 Sender: netfilter-admin@lists.netfilter.org Message-ID: <20040419163159.GE10272@home.manuelm.org> References: Mime-Version: 1.0 Return-path: Content-Disposition: inline In-Reply-To: Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit To: netfilter@lists.netfilter.org * Daniel David Benson 19. Apr 04: > I essentially have everything go out as a global nat, What exactly is you rule? > but every now and then a tcpdump on the frontside interface is showing > some ICMP and UDP packets not getting natted. What exactly do you tcpdump? (Cmdline, please.) What exactly is the output of it? > Anyone ever seen this before? No. > It's not a major deal as we are are having our front edge router > handle these ugly packets, but I'd like to tighten it up. I am just curious: does it NAT, too? (This has nothing to do with your problem, whatever it may be.) Regards, Frank. -- Sigmentation fault