/* HINT: Search archives @ http://www.indyramp.com/masq/ before posting! */


On Wed, 29 Sep 1999, `Jag wrote:

> > Acess to ftp sites not allowed, from Netscape Browser
> > or from ftp command line.
> 
> On my firewall, I loaded the ip_masq_irc module

ITYM ip_masq_ftp

> > 2nd problem:
> > Diald won''t connect  when attempt is made to connect to the outside
> > from my inside  private network. I have to make the attemp from my
> > firewall machine to establish a connection.
> > Once connectted my private network works fine.
> 
> Hm.. my guess would be this has something to do with all the
> machines inside your private networking trying to use your firewall
> as their default route.  Personally, I don't see why you would want
> any machine besides your firewall to dial up because the machine
> that just dialed up would then have to become your firewall. 

What he means is that traffic from the local network to the Internet
is not causing the firewall to dial. The traffic has to be initiated
on the firewall.

The problem here is that there aren't any firewall rules permitting
traffic from the local network to sl0. When the link is down, diald
listens for traffic on sl0. Add a forward/masq rule for sl0 in
addition to the one for ppp0. 

--
 John Hardin KA7OHZ                               [EMAIL PROTECTED]
 pgpk -a finger://gonzo.wolfenet.com/jhardin    PGP key ID: 0x41EA94F5
 PGP key fingerprint: A3 0C 5B C2 EF 0D 2C E5  E9 BF C8 33 A7 A9 CE 76 
-----------------------------------------------------------------------
  Mary had a little key
  she kept it in escrow
  and everything that Mary sent
  the feds were sure to know         -- Andy Starritt, in sci.crypt
-----------------------------------------------------------------------
   32 days until Halloween and Daylight Savings Time ends

_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
Admin requests can be handled at http://www.indyramp.com/masq-list/ -- THIS INCLUDES 
UNSUBSCRIBING!
or email to [EMAIL PROTECTED]

PLEASE read the HOWTO and search the archives before posting.
You can start your search at http://www.indyramp.com/masq/
Please keep general linux/unix/pc/internet questions off the list.

Reply via email to