On Fri, Nov 02, 2001 at 01:52:39PM +0500, Antropov Anton wrote: > iptables -t nat -A POSTROUTING -o ppp0 -j MASQUERADE You are using NAT with NetBIOS, that's the Problem. I am currently working on conntrack and nat_helper modules to circumvent the problems you are experiencing, but I am still in early planning phase. The actual problem is, that some NetBIOS packets carry IP addresses in their payload that is not taken care of in the netfilter code. Examples are WINS messages via NetBIOS-ns (137/udp) and Domain-Logon via NetBIOS-dgm (138/udp). I recommend using routing for these purposes instead of NAT until some solution like my netfilter modules is available. HTH, Joerg -- | Joerg Wendland (system management) | Debian Developer | | Network Operation Center Scan-Plus GmbH | fon +49-731-92013-21 | | Moerikestrasse 5, D-89077 Ulm, Germany | fax +49-731-6027146 | | PGP-key: 51CF8417 (FP: 79C0 7671 AFC7 315E 657A F318 57A3 7FBD 51CF 8417) |
Attachment:
pgp3liFAI2JAo.pgp
Description: PGP signature