Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Martijn Lievaart <m@rtij.nl>
To: victor oliveira <victor.oliveira@concretesolutions.com.br>
Cc: netfilter@lists.netfilter.org
Subject: Re: -i interface filter not working for firewall
Date: Sun, 03 Dec 2006 17:08:09 +0100	[thread overview]
Message-ID: <4572F669.1000206@rtij.nl> (raw)
In-Reply-To: <b020b8120611300908r386fda2apf6dc55fe09aee2b@mail.gmail.com>

victor oliveira wrote:

> My problem is the following: I am able to connect from my machine to
> the firewall using both eth2 and eth3. However, note that the INPUT
> default is DROP, and the only rule on the INPUT SHOULD be filtering
> and only allowing connections to the eth2 and not the eth3
> interface...


You rules are a bit messy, but it should probably work. Are you sure you 
connect through eth3? You do say it is from the same machine, if you are 
connected to eth2 and address the ip addres of eth3, you still come in 
through eth2.

HTH,
M4



  reply	other threads:[~2006-12-03 16:08 UTC|newest]

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
     [not found] <b020b8120611300905t7f440ef9mf940a128fd8d46e6@mail.gmail.com>
2006-11-30 17:08 ` -i interface filter not working for firewall victor oliveira
2006-12-03 16:08   ` Martijn Lievaart [this message]
2006-12-04 13:41     ` victor oliveira
2006-12-04 14:20       ` Pascal Hambourg
2006-12-04 16:21         ` victor oliveira
     [not found]     ` <b020b8120612040541o1e713e77k51bd24aedc94b9e@mail.gmail.com>
2006-12-04 18:58       ` Martijn Lievaart

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=4572F669.1000206@rtij.nl \
    --to=m@rtij.nl \
    --cc=netfilter@lists.netfilter.org \
    --cc=victor.oliveira@concretesolutions.com.br \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox