Traceroute not working through gshield NAT
I replaced my NAT machine a few days ago and I'm using gshield to
configure the firewall and NAT.
>From machines in the NAT LAN I can ping remote hosts, but traceroute is
not working. I have
in my gShield.conf file these settings:
ICMP_ALLOW_ALL="YES"
TRACE_ALLOW_ALL="YES".
I can see my the lights on my switch flashing so I can tell the packets
are getting out, but
nothing reported back. I can traceroute from the machine that's running
NAT without any problem.
I enabled logging in gshield, too, but nothting is logged. What tools
can I use to see where
things are failing?
$ ping debian.org
PING debian.org (192.25.206.10): 56 data bytes
64 bytes from 192.25.206.10: icmp_seq=0 ttl=50 time=74.8 ms
64 bytes from 192.25.206.10: icmp_seq=1 ttl=50 time=76.6 ms
--- debian.org ping statistics ---
2 packets transmitted, 2 packets received, 0% packet loss
round-trip min/avg/max = 74.8/75.7/76.6 ms
$ traceroute debian.org
traceroute to debian.org (192.25.206.10), 30 hops max, 38 byte packets
1 * * *
Reply to: