shorewall-users April 2012 archive
Main Archive Page > Month Archives  > shorewall-users archives
shorewall-users: Re: [Shorewall-users] DNAT ignoring rate-limit

Re: [Shorewall-users] DNAT ignoring rate-limit

From: Tom Eastep <teastep_at_nospam>
Date: Mon Apr 30 2012 - 18:27:30 GMT
To: shorewall-users@lists.sourceforge.net

On 04/30/2012 10:33 AM, Pau Beltrán wrote:
> Sorry, from the IP 192.168.1.4
>

Something is wrong with your testing then, because *none* of your DNAT
rules have been hit at all:

Chain net_dnat (1 references)
 pkts bytes target prot opt in out source
destination
    0 0 DNAT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:7171 to:192.168.2.2
    0 0 DNAT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:80 to:192.168.2.2:8090
    0 0 DNAT tcp -- * * 0.0.0.0/0
0.0.0.0/0 tcp dpt:8090 to:192.168.2.2:8090

-Tom
-- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________

------------------------------------------------------------------------------
Live Security Virtual Conference
Exclusive live event will cover all the ways today's security and
threat landscape has changed and how IT managers can respond. Discussions
will include endpoint security, mobile security and the latest in malware
threats. http://www.accelacomm.com/jaw/sfrnl04242012/114/50122263/

_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users