shorewall-users March 2011 archive
Main Archive Page > Month Archives  > shorewall-users archives
shorewall-users: Re: [Shorewall-users] Port Forwarding

Re: [Shorewall-users] Port Forwarding

From: <CACook_at_nospam>
Date: Fri Mar 04 2011 - 18:50:57 GMT
To: shorewall-users@lists.sourceforge.net

On Fri 04 March 2011 05:55:35 Roberto C. Sánchez wrote:
> First, to confirm, do you have ip forwarding enabled?

Well, I have no idea.

> Second, you shouldn't need the ACCEPT rule, since the DNAT creates a
> coresponding ACEPT rule for you already.

If I don't put in that ACCEPT rule I get firewall blocking errors in dmesg.

> Now, please also note that if you are rudoing the DNAT redirection on
> the same machine from which you are running the web browser, that you
> may want to see this as well:
> http://www.shorewall.net/Shorewall_Squid_Usage.html#Firewall
>
> It is written for Squid, but the same principle applies.

Sorry, I can't understand how that fits.

Right now almost everything in my systems is failing. Hard drive in laptop going out; running remote X apps doesn't work on HTPC; camera app doesn't work on backup server; my phone quit; download of Debian is so slow it's going to take 12 hours; and this is my only day off. It's hard to think at this point.

------------------------------------------------------------------------------
What You Don't Know About Data Connectivity CAN Hurt You
This paper provides an overview of data connectivity, details
its effect on application quality, and explores various alternative
solutions. http://p.sf.net/sfu/progress-d2d
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users