Brad, > The devil was in the details, particularly the fact that your > external interfac uses an RFC 1918 address... > > (snip) > > Notice the rule that was hit: "Shorewall:man1918". Do you have > the "norfc1918" option set for eth0 in /etc/shorewall/interfaces ? > > E.g.: > > net eth0 detect dhcp,routefilter,norfc1918 > ^^^^^^^^^ > which is the Bering 1.0-stable default I believe.
Indeed it was the default. Thanks for catching that! -bryan ------------------------------------------------------- This SF.NET email is sponsored by: FREE SSL Guide from Thawte are you planning your Web Server Security? Click here to get a FREE Thawte SSL guide and find the answers to all your SSL security issues. http://ads.sourceforge.net/cgi-bin/redirect.pl?thaw0026en ------------------------------------------------------------------------ leaf-user mailing list: [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/leaf-user SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html
