[ale] I'm an iptables idiot

Frank S. Glass glass at holos.com
Thu Mar 11 13:49:09 EST 2004


Since your default policy is ACCEPT for the filter rules, you should forget my
previous suggestion.  What you have looks to me like it should work.

Is it possible that the target machine 10.0.25.52 gets packets properly nat'ed
to port 2401 but the reply gets lost?  Is the route correct on the target so
that it knows to route back by the same path?  (Could be a problem if the target
is on a different subnet).

You may have to resort to tcpdump or ethereal to see where the packets actually
go.  

-- 
Frank S. Glass
Holos Software, Inc.
770.496.1877

-------------------------------------------------
Holos Software, Inc. http://holos.com



More information about the Ale mailing list