[leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-01 Thread Jeff Clark
I'm setting up a Bering rc-4 box with pppoe net access and two internal networks - not a DMZ just 2 seperate internal networks. I want traffic blocked between the internal networks and from the 2nd network to the net. I've set up 3 zones: net is pppoe through eth0 ofl is 192.168.17.0/24 on 192.1

Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-02 Thread Ray Olszewski
Not being a Shorewall expert, I waited a while to see if someone who knows Shorewall would spot the problem just from the config files you posted. Not seeing any replies of that sort, let me suggest you post a more complete report, following the advice in the SR FAQ. Then people (like me) who do

Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-02 Thread Tom Eastep
--On Friday, November 01, 2002 10:27:51 PM -0400 Jeff Clark <[EMAIL PROTECTED]> wrote: My problems begin with the fact that shorewall does show a REJECT policy for the onl network with the all2all chain even though it appears to establish one - I cannot ftp or ssh from ofl to onl or access the

Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-02 Thread Jeff Clark
- Original Message - From: "Tom Eastep" <[EMAIL PROTECTED]> To: "Jeff Clark" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Saturday, November 02, 2002 10:22 PM Subject: Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long > >

Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-03 Thread Jeff Clark
- Original Message - From: "Ray Olszewski" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Saturday, November 02, 2002 12:12 PM Subject: Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long > > One piece of what you wrote is especiall

Re: [leaf-user] Bering RC-4 unexplainable holes in shorewall - long

2002-11-03 Thread Tom Eastep
--On Sunday, November 03, 2002 03:18:39 AM -0400 Jeff Clark <[EMAIL PROTECTED]> wrote: Okay, it's 2 am again and I'm rambling...again. Lessons learned are: (a) if you can't get something to work that should work, take a break every now and then or you'll end up screwing it up worse, and (b) i