[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Upstream bug 39132 - Starting with 3.0.0-rc6, masquerading seems to be broken.



On Sun, Aug 21, 2011 at 06:42:13PM -0500, Troy Davis wrote:
> -A POSTROUTING -s 192.168.0.64/26 -o eth1 -m multiport -p udp --dport
> 53,123 -j MASQUERADE
> -A POSTROUTING -s 192.168.0.64/26 -o eth1 -m multiport -p tcp --dport
> 22,80,119,443 -j MASQUERADE

This config allows packets with private addresses to escape to eth1. Fix
it.

Bastian

-- 
She won' go Warp 7, Cap'n!  The batteries are dead!


Reply to: