[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

IPMasqing Act 2 Scene 42



OK,

Here's the latest. Managed to get my server to see domain names etc. However
now my masqued machine can't see anything. The most I can do is PING the
external IP number of the linux box (63.105.28.151). As far as I can tell I
have everything set up correctly. I've attached (typed out) the output of
IPMASQ -v ... can someone take a look and let me know what I'm missing.

FYI 

My IP number provided by my ISP is 63.105.28.151
The IP of my server on the internal LAN is 192.168.0.1

Cheers
Stephen

Output of ipmasq -v:

#: interfaces found
#: eth0 63.105.28.151/255.255.255.0
#: eth1 192.168.0.1/255.255.255.0

echo "0" > /proc/sys/net/ipv4/ip_forward
echo "0" > /proc/sys/net/ipv4/ip_always_defrag

/sbin/ipchains -P input DENY
/sbin/ipchains -P output DENY
/sbin/ipchains -no warnings -P forward DENY
/sbin/ipchains -F input
/sbin/ipchains -F output
/sbin/ipchains -no warnings -F forward
/sbin/ipchains -A input -J ACCEPT -i lo
/sbin/ipchains -A input -J DENY -i lo -s 127.0.0.1/255.0.0.0 -l
/sbin/ipchains -A input -J ACCEPT -i eth1 -d 255.255.255.255/32
/sbin/ipchains -A input -J ACCEPT -i eth1 -s 192.168.0.1/255.255.255.0
/sbin/ipchains -A input -J ACCEPT -i eth1 -d 224.0.0.0/4 -p | tcp
/sbin/ipchains -A input -J DENY -i eth0 -d 255.255.255.255/32
/sbin/ipchains -A input -J DENY -i eth0 -d 63.105.28.151/32
/sbin/ipchains -A input -J DENY -i eth0 -d 63.105.28.255/32
/sbin/ipchains -no warnings -A forward -j MASQ -i eth0 -s
192.168.0.1/255.255.255.0

/sbin/ipchains -A output -J ACCEPT -i lo
/sbin/ipchains -A output -J ACCEPT -i eth1 -d 192.168.0.1/255.255.255.0
/sbin/ipchains -A output -J ACCEPT -i eth1 -d 224.0.0.0/4 -p | tcp
/sbin/ipchains -A output -J DENY -i eth0 -d 192.168.0.1/255.255.255.0 -l
/sbin/ipchains -A output -J ACCEPT -i eth0 -d 63.105.28.151/32
/sbin/ipchains -A output -J ACCEPT -i eth0 -d 63.105.28.255/32

echo "1" > /proc/sys/net/ipv4/ip_forward
echo "1" > /proc/sys/net/ipv4/ip_always_defrag



Reply to: