At 05:34 PM 7/4/02 +0200, Luigi Capriotti wrote: >I'm trying to configure Bering with masqueraded subnets (by means of >shorewall), but as soon as I put a line in the masq file I receive this: > >iptables: invalid arguments > >By stepping into the shorewall file I've realised that the offending >command is the following: > >iptables -t nat -A POSTROUTING -s 192.168.1.128/25 -d 0.0.0.0/0 -o eth0 >-j MASQUERADE > >(where 192.168.1.128/25 is my local net on eth1) > >and specifically the problematic argument is -j MASQUERADE. > >Given the fact that all iptables modules are included in the kernel by >design, what's the clue, please?
Disclaimer: I don't have Bering or Shorewall running here, but I do have iptables running on a Debian-based firewall/router. Like the error message says, I don't believe MASQUERADE is the correct -j argument. The analogous rule on my system uses "-j SNAT" (means "Source NAT", I *think*). -- -----------------------------------------------"Never tell me the odds!"-------------- Ray Olszewski -- Han Solo Palo Alto, California, USA [EMAIL PROTECTED] ------------------------------------------------------------------------------------------- ------------------------------------------------------- This sf.net email is sponsored by:ThinkGeek Caffeinated soap. No kidding. http://thinkgeek.com/sf ------------------------------------------------------------------------ leaf-user mailing list: [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
