iptables config

iptables config

Post by Dean Thompso » Thu, 20 Dec 2001 07:59:42


Quote:> I'm using iptables and only one rule:
> iptables -t nat -A POSTROUTING -o ppp0 -j MASQUERADE
> When I open a browser on a client PC, that is located on my intranet, and
> try to surf to www.icq.com or www.tucows.com the pages are never displayed.
> Do these pages have something special??

Check to make sure that you have enabled IP forwarding and check to see what
firewall rules SUSE is setting up.  Additionally, check to make sure that a
DNS server IP address has been specified on the clients to allow them to
contact a DNS server.

Can the internal machines ping the gateway ?

See ya

Dean Thompson


| Bach. Computing (Hons)     | ICQ     - 45191180                         |
| PhD Student                | Office  - <Off-Campus>                     |
| School Comp.Sci & Soft.Eng | Phone   - +61 3 9903 2787 (Gen. Office)    |
| MONASH (Caulfield Campus)  | Fax     - +61 3 9903 1077                  |
| Melbourne, Australia       |                                            |


1. Iptables config

I have 2 servers with iptables configured

i would like open only ssh protocol for on

if i configure like this, it's not ok
iptables  -A INPUT -i eth1 -p tcp -m state --state ESTABLISHED --source --dport 22 -j ACCEPT
iptables -A OUTPUT -o eth1 -p tcp --sport 22 -m state -state ESTABLISHED

but if i delete -m state --state ESTABLISHED in input chain is ok

What have i to do ?

All exemples i've seen on web use -m state --state ESTABLISHED in INPUT

2. 5250-Emulation available for Linux?

3. iptables config for router

4. How to print w/StarOffice 5.1 and RedHat 5.2 upgraded to kernel 2.2.x?

5. iptables config for NAT and restricted access to services from outside

6. Bethesda, MD - Engineer

7. IPTABLES config

8. Unusual KDE3 Install Problem?

9. what does "-m state --state NEW,ESTABLISHED" mean when used in iptables config file?

10. iptables config help

11. recommend iptables config tool

12. iptables config question

13. kernel config for iptables support