also sprach Ritesh Raj Sarraf <rrs@researchut.com> [2006.03.25.2224 +0100]:
> iptables -A FORWARD -i tap0 -o eth0 -j ACCEPT
That's only one way, you need the other way too.
> But adding another rule:
> iptables -A FORWARD -i eth0 -o tap0 -j ACCEPT
>
> makes everything work.
Alternatively, try
iptables -I FORWARD 1 -m state --state ESTABLISHED,RELATED -j ACCEPT
--
Please do not send copies of list mail to me; I read the list!
.''`. martin f. krafft <madduck@debian.org>
: :' : proud Debian developer and author: http://debiansystem.info
`. `'`
`- Debian - when you have better things to do than fixing a system
"wer schmetterlinge lachen hört,
der weiss wie wolken schmecken."
-- freiherr friedrich von hardenberg
Attachment:
signature.asc
Description: Digital signature (GPG/PGP)