Linux Netfilter discussions
 help / color / mirror / Atom feed
* Re-2: Still having problems with forwarding
@ 2004-03-15  9:10 peter.gehle
  2004-03-15  9:16 ` Antony Stone
  0 siblings, 1 reply; 3+ messages in thread
From: peter.gehle @ 2004-03-15  9:10 UTC (permalink / raw)
  To: netfilter


> 1. Can you be more specific about exactly what problems you are having - 
> what 
> does work, what does not work, how are you testing it?

Since i have made some changes i don't get an connection to my VPN Server,
it seems that iptables don't forwards the vpn tunnel to my internet vpn server.

i can't send any pings to the internet? 

also i can't connect to my Terminalserver.

I think the whole forwading don't works?

> 2. Is it possible that you can simplify your ruleset by removing rules 
> which 
> are nice to have, but have nothing to do with this problem (eg: the 
> rate-limited DROP rules, and the TCP flag matches), so that it is easier to 
> 
> know what to focus on, and what is unimportant?

I think i have to write a complete new firewall script, but at first i will try
to get all working what i need. 

Thanks Peter


To: Antony@Soft-Solutions.co.uk
Cc: netfilter@lists.netfilter.org



^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re-2: Still having problems with forwarding
@ 2004-03-15  9:14 netfilter
  0 siblings, 0 replies; 3+ messages in thread
From: netfilter @ 2004-03-15  9:14 UTC (permalink / raw)
  To: netfilter

 
> 1. Can you be more specific about exactly what problems you are having - 
> what 
> does work, what does not work, how are you testing it?

Since i have made some changes i don't get an connection to my VPN Server,
it seems that iptables don't forwards the vpn tunnel to my internet vpn server.

i can't send any pings to the internet? 

also i can't connect to my Terminalserver.

I think the whole forwading don't works?

> 2. Is it possible that you can simplify your ruleset by removing rules 
> which 
> are nice to have, but have nothing to do with this problem (eg: the 
> rate-limited DROP rules, and the TCP flag matches), so that it is easier to 
> 
> know what to focus on, and what is unimportant?

I think i have to write a complete new firewall script, but at first i will try
to get all working what i need. 

Thanks Peter


To: Antony@Soft-Solutions.co.uk
Cc: netfilter@lists.netfilter.org



^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: Re-2: Still having problems with forwarding
  2004-03-15  9:10 Re-2: Still having problems with forwarding peter.gehle
@ 2004-03-15  9:16 ` Antony Stone
  0 siblings, 0 replies; 3+ messages in thread
From: Antony Stone @ 2004-03-15  9:16 UTC (permalink / raw)
  To: netfilter

On Monday 15 March 2004 9:10 am, peter.gehle@sbgit.com wrote:

> > 1. Can you be more specific about exactly what problems you are having -
> > what
> > does work, what does not work, how are you testing it?
>
> Since i have made some changes i don't get an connection to my VPN Server,
> it seems that iptables don't forwards the vpn tunnel to my internet vpn
> server.

What did you change?

> i can't send any pings to the internet?
>
> also i can't connect to my Terminalserver.
>
> I think the whole forwading don't works?

If it did work before you made the changes, then I think knowing what you 
changed will point quite quickly to the problem.

> > 2. Is it possible that you can simplify your ruleset by removing rules
> > which
> > are nice to have, but have nothing to do with this problem (eg: the
> > rate-limited DROP rules, and the TCP flag matches), so that it is easier
> > to
> >
> > know what to focus on, and what is unimportant?
>
> I think i have to write a complete new firewall script, but at first i will
> try to get all working what i need.

Start simple and add things as you need, don't try to fix something which is 
both complicated and broken.

Regards,

Antony.

-- 
There are only 10 types of people in the world:
those who understand binary notation,
and those who don't.

                                                     Please reply to the list;
                                                           please don't CC me.




^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2004-03-15  9:16 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-03-15  9:10 Re-2: Still having problems with forwarding peter.gehle
2004-03-15  9:16 ` Antony Stone
  -- strict thread matches above, loose matches on Subject: below --
2004-03-15  9:14 netfilter

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox