TCLUG Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TCLUG:9525] IPCHAINS, Firewall and Masquerading



Try this ipchains firewall design tool:
http://rlz.ne.mediaone.net/linux/firewall/index.html

Peter Lukas

On Thu, 28 Oct 1999, Amy Tebbe wrote:

> On Thu, Oct 28, 1999 at 03:42:26PM +0000, Eric Scott (ewscott@standby.com) wrote:
> > I'm trying to implement a server setup using US West DSL following the setup in the IPCHAINS HOWTO.  My setup is almost identical to the one shown in the HOWTO
> > 
> > http://www.linuxdoc.org/HOWTO/IPCHAINS-HOWTO-7.html
> > 
> > but I use eth0 for ppp0, and change eth0 and eth1 in the example to eth1 and eth2, respectively, changing the references to each interface accordingly in the script.
> > 
> > When I execute my rc.firewall script, I am unable to connect. The packet filter box can ping the server IPs but not ping its own interfaces, and the internal network can reach the external network but not the servers. Obviously I've got some bugs in the script somewhere.
> > 
> > If someone could review the script and tell me where I made my mistakes it would be greatly appreciated. The file and any additional info can be provided on request.
> 
> 
> Here's a few more URLs you can review which may help you out:
> 
> IP Masquerading HOWTO:  http://ipmasq.cjb.net/ipmasq-HOWTO.html 
> IPChains HOWTO: http://heaven.hamline.edu/LDP/HOWTO/IPCHAINS-HOWTO.html 
> PortForwarding HOWTO: http://howto.real-time.com/realtime/PortForwarding/
> 
> -- 
> Amy Tanner                                      Voice: 612.943.8700
> Real Time Enterprises, Inc.	                  Fax: 612.943.8500
> amy@real-time.com		    	   http://www.real-time.com
> PGP fingerprint =  67 6C 8F DB B1 7A 8D 41  DC 7B CA 0B 28 1E 67 AD 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: tclug-list-unsubscribe@mn-linux.org
> For additional commands, e-mail: tclug-list-help@mn-linux.org
> 
>