On Sunday, August 8, 2004, lonely wolf wrote:
lonely wolf> Dumitru Postoronca wrote:
>> 
>> Lamuriti-ma cu ceva: gateway-ul fowardeaza packetele cu
>> src 10.0.0.x dst 192.168.0.255 catre reteua 192.168.0.0/24 ?????
>>                            ^^^
lonely wolf> daca ar avea destinatia asta, da.

>> # log packet inainte de decizia de rutare
>> iptables -t nat -I PREROUTING 1 -p udp --dport 7550 -j LOG --log-prefix "BORG DNAT "
>> # log packet dupa decizie
>> iptables -t mangle -I FORWARD 1 -p udp --dport 7550 -j LOG
>> --log-prefix "BORG mangle forward "
>> 
>> un tail -f /var/log/syslogd | grep BORG
>> imi arata packetul "BORG DNAT" dar nu si "BORG mangle forward"

lonely wolf> da-mi te rog paste la o linie din log.

tail din syslogd zice:
Aug  8 20:04:45 pluto kernel: BORG DNAT IN=eth0 OUT=
MAC=00:50:bf:d8:6b:b4:00:0d:60:39:20:8e:08:00
SRC=10.0.0.201 DST=192.168.0.255 LEN=68 TOS=0x00
PREC=0x00 TTL=128 ID=5256 PROTO=UDP SPT=7550 DPT=7550 LEN=48

[EMAIL PROTECTED]:/etc/rc.d# tcpdump -i eth0 -nqt 'port 7550 or 7551'
listening on eth0, link-type EN10MB (Ethernet), capture size 96 bytes
IP 10.0.0.201.7550 > 192.168.1.255.7550: UDP, length: 50
IP 10.0.0.201.7550 > 192.168.1.255.7550: UDP, length: 39
IP 10.0.0.201.7550 > 192.168.1.255.7550: UDP, length: 40
IP 10.0.0.201.7550 > 192.168.1.255.7550: UDP, length: 40





--- 
Detalii despre listele noastre de mail: http://www.lug.ro/


Raspunde prin e-mail lui