Linux Netfilter discussions
 help / color / mirror / Atom feed
* Looking to exclude certain destinations from masquarade
@ 2007-06-21 21:21 Bruce Ferrell
  2007-06-22 13:29 ` Gáspár Lajos
  0 siblings, 1 reply; 3+ messages in thread
From: Bruce Ferrell @ 2007-06-21 21:21 UTC (permalink / raw)
  To: netfilter

I am trying to establish an ipsec tunnel from a system that is also a 
snat router.  so far I seem to be able to have my masquerade or my vpn 
tunnel but not both.

the basic rules I'm using are these:

$IPTABLES -A FORWARD -i $EXTIF -o $INTIF -m state --state 
ESTABLISHED,RELATED -j ACCEPT
$IPTABLES -A FORWARD -i $INTIF -o $EXTIF -j ACCEPT
$IPTABLES -A FORWARD -j LOG
$IPTABLES -t nat -A POSTROUTING -o $EXTIF -j MASQUERADE


Any suggestions?


^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2007-06-23  7:30 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-06-21 21:21 Looking to exclude certain destinations from masquarade Bruce Ferrell
2007-06-22 13:29 ` Gáspár Lajos
2007-06-23  7:30   ` Ray Leach

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox