Masquerading problems

Eric Thelin eric@thelin.org
Sat, 9 Dec 2000 14:10:52 -0700 (MST)


On Sat, 9 Dec 2000, Craig White wrote:
> ----
> Assuming that you can ping repeatedly without packet loss...
>
> I would definitely change the last rule to...
>
> /sbin/ipchains -A forward -i eth0 -s 192.168.0.0/16 -d ! 192.168.0.0/16 -j
> MASQ
>
> the difference being...
>
> add the specific interface being masqueraded...the internal network adaptor
> the destination address being masquerade anything NOT destined for the
> internal lan

No change.  Any more ideas?


> obviously, this is a simple rule set and nowhere near adequate for securing
> a network.
>
> and lastly....
>
> sometimes the cable modems are goofy and insistent about being powered off
> before switching to another network adaptor on another computer.

Interesting to note but since I am not moving the cable modem to another
computer it can't be tied to this situation.

Eric

-- 
Eric Thelin                                          erict@aztechbiz.com
           AZtechBiz.com: Where Arizona Does Tech Business
               Voice: 480-377-6743   Fax: 480-377-6755