Re: [Leaf-user] OT: ipchains

2002-01-18 Thread Charles Steinkuehler
If you want to take the time to help me out that would be great, but if not that's cool. thanks for any help, -Alex Fore We have two internal DNS servers one internal smtp server, many internal webservers. ipchains commands snipped Assumptions: eth0 = internal network = good eth1 = DMZ

Re: [Leaf-user] OT: ipchains

2002-01-18 Thread Charles Steinkuehler
ipsec -Lvn --line-numbers is your friend. Charles Steinkuehler http://lrp.steinkuehler.net http://c0wz.steinkuehler.net (lrp.c0wz.com mirror) Pay special attention to the ^ ^^^ Did you mean `ipchains -nvL --line-numbers' ??? Notice, the `L' cannot precede the `nv' . . .

Re: [Leaf-user] OT: ipchains

2002-01-17 Thread Blanton Lewis
I'm not an ipchains guru, and I don't have a DMZ, but this is what I have that I built from the ipchains HOWTO. The key for me was allowing the source port to be a range from 1024:4999 NOTE that my input, output, and forward chains (not shown here) like the ipchains HOWTO send packets based only

Re: [Leaf-user] OT: ipchains

2002-01-17 Thread Charles Steinkuehler
I know this is off topic, so feel free to shun me or ignore me if you will, but I think i will probly find ppl who have had / are having the same problem here... That said, I am trying to get the (A serious example) ipchains 3 interface setup from the ipchains howto working, and it is