shorewall-users March 2011 archive
Main Archive Page > Month Archives  > shorewall-users archives
shorewall-users: Re: [Shorewall-users] Port Forwarding

Re: [Shorewall-users] Port Forwarding

From: <CACook_at_nospam>
Date: Fri Mar 04 2011 - 18:50:57 GMT

On Fri 04 March 2011 05:55:35 Roberto C. Sánchez wrote:
> First, to confirm, do you have ip forwarding enabled?

Well, I have no idea.

> Second, you shouldn't need the ACCEPT rule, since the DNAT creates a
> coresponding ACEPT rule for you already.

If I don't put in that ACCEPT rule I get firewall blocking errors in dmesg.

> Now, please also note that if you are rudoing the DNAT redirection on
> the same machine from which you are running the web browser, that you
> may want to see this as well:
> It is written for Squid, but the same principle applies.

Sorry, I can't understand how that fits.

Right now almost everything in my systems is failing. Hard drive in laptop going out; running remote X apps doesn't work on HTPC; camera app doesn't work on backup server; my phone quit; download of Debian is so slow it's going to take 12 hours; and this is my only day off. It's hard to think at this point.

What You Don't Know About Data Connectivity CAN Hurt You
This paper provides an overview of data connectivity, details
its effect on application quality, and explores various alternative
Shorewall-users mailing list