[Shorewall-users] Redirect/forwarding of multicast requests

2012-12-06 Thread Dr. Harry Knitter
Hello, I have the folowing problem: My TV is attached to a debian (squeeze) erver running MediaTomb as DLNA server. This (gr!*) TV sends its multicast request for discovering the server not to port udp 1900 where the server is listening for those requests. 65.017066 192.168.178.24 -> 239.255.

Re: [Shorewall-users] Redirect/forwarding of multicast requests

2012-12-06 Thread Dr. Harry Knitter
Am Donnerstag, 6. Dezember 2012 schrieb Tom Eastep: > What is the policy for connections from the firewall back to the zone > with the TV (probably $FW -> loc)? > > -Tom the TV is attached to the nic pointing to a DSL router (192.168.178.1). The policy (firewall on my server) is DROP for the net

Re: [Shorewall-users] Redirect/forwarding of multicast requests

2012-12-06 Thread Dr. Harry Knitter
Am Donnerstag, 6. Dezember 2012 schrieb Tom Eastep: > > Try adding these rules: > > REDIRECT zone-of-the-tv:address-of-the-tv 1900 > udp port-tv-is-sending-to > ACCEPT $FW > zone-of-the-tv:address-of-the-tv udp > > -Tom > You do not need a parachute to skydive. You onl

Re: [Shorewall-users] Redirect/forwarding of multicast requests

2012-12-07 Thread Dr. Harry Knitter
Am Freitag, 7. Dezember 2012 schrieb Tom Eastep: > On 12/06/2012 11:16 PM, Dr. Harry Knitter wrote: > > Am Donnerstag, 6. Dezember 2012 schrieb Tom Eastep: > >> Try adding these rules: > >> > >> REDIRECT zone-of-the-tv:address-of-the-tv 1900 > >&

[Shorewall-users] Problems with IP-forwarding

2014-06-19 Thread Dr. Harry Knitter
Dear list members, I'm really frustated about not being able to get a Debiand Wheezy machine routing packets from the internal network to the external interface. The machine has two nics eth0 (internal) and eth1 (external), the latte pointing to a dsl-router. The internal net is 192.168.0.0/2

Re: [Shorewall-users] Problems with IP-forwarding

2014-06-19 Thread Dr. Harry Knitter
Am Freitag, 20. Juni 2014 schrieb Tom Eastep: > On 6/19/2014 2:47 PM, Dr. Harry Knitter wrote: > > Dear list members, > > > > > > I'm really frustated about not being able to get a Debiand Wheezy machine > > routing packets from the internal network t