Re: [Shorewall-users] need a rule! going bonkers :-(

2020-11-23 Thread Sassy Natan
nd it's driving me absolutely NUTS. > > yes, it's late ... > > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-users > -- Regards, Sassy Natan 972-(0)54-220370

Re: [Shorewall-users] SUCCESS!! Re: RTP not working

2020-05-12 Thread Sassy Natan
gt; And Shorewall is restarted. > >> > >> And yes: It seems to work! Mail receiving an sending is possible. And > >> also, the wieistmeineip.de is doing good! > >> > >> So I should make that module persistent and will do further testing

Re: [Shorewall-users] SUCCESS!! Re: RTP not working

2020-05-12 Thread Sassy Natan
gt;>> Thunderbird tells 'connected to smtp.1und1.de' but after a minute or > so > >>>> there is a timeout. Same with receiving mail at pop.1und1.de. > >>>> > >>>> 2. It's not possible to visit at least one Website: wieistmeineip.de > >>> > >>> Have a look at you MTU size, you may need to twiddle that a little. > >>> > >> > >> MTU is set to 1492 . > >> I thought 1500 is default?? > >> > > > > ppp is different. > > > > What is your entry in shorewall.conf > > > > CLAMPMSS=Yes > > > > Current setting is > > CLAMPMSS=No > > I'll try to switch > > Boris > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-users > -- Regards, Sassy Natan 972-(0)54-2203702 ___ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users

Re: [Shorewall-users] RTP not working

2020-05-11 Thread Sassy Natan
_nat_h323,nf_nat_ftp,nf_nat_amanda,nf_nat,nf_conntrack_amanda,nf_conntrack_sane,nf_conntrack_tftp,nf_conntrack_sip,nf_conntrack_pptp,nf_conntrack_proto_gre,nf_conntrack_netlink,nf_conntrack_netbios_ns,nf_conntrack_broadcast,nf_conntrack_irc,nf_conntrack_h323,nf_conntrack_ftp, > Live 0xb89e > libcrc32c 16384 2 nf_nat,nf_conntrack, Live 0xb8931000 > > whereas /etc/modules doesn't contain any of these nf_* nor ip_ . Seems > they are loaded by an other component - Shorewall??? > > Boris > > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-users > -- Regards, Sassy Natan 972-(0)54-2203702 ___ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users

Re: [Shorewall-users] Disabling all helpers

2019-02-06 Thread Sassy Natan
> > Should I set "AUTOHELPERS=Yes" to No in shorewall.conf? > > Kind regards > Kevin > > > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourcefo

Re: [Shorewall-users] Shorewall with Overlapping IPs

2015-02-17 Thread Sassy Natan
g TAP device will solve my issues, but can you think about any other valid solution? Thanks again Sassy On Tue, Feb 17, 2015 at 5:03 PM, Tom Eastep wrote: > On 2/17/2015 5:46 AM, Sassy Natan wrote: > > Thanks Simon, > > > > I think there is no way to escape the creation of a

Re: [Shorewall-users] Shorewall with Overlapping IPs

2015-02-17 Thread Sassy Natan
wrote: > Sassy Natan wrote: > > > I'm trying to build a VPN site 2 site with my current shorewall + > openswan configuration with a overlapping IP on both ends. > > > > Here is my Topology. > > > > Site A: > > eth0 - 172.16.0.0/24 - Internal LAN &

[Shorewall-users] Shorewall with Overlapping IPs

2015-02-16 Thread Sassy Natan
Hi Everyone, I'm facing a problem which I hope someone will might help me here. I'm trying to build a VPN site 2 site with my current shorewall + openswan configuration with a overlapping IP on both ends. Here is my Topology. Site A: eth0 - 172.16.0.0/24 - Internal LAN eth1 - 10.0.0.0/24 - LAB

Re: [Shorewall-users] Information

2014-04-18 Thread Sassy Natan
Yep this is supported. If u need help let me know On Apr 18, 2014 6:13 PM, "Youva Boumekla" wrote: > hi all, > > i would like know if it's possible to do multi ISP without load > balancing. Because, i want to assign 1 interface on 1 provider (i have 2 > provider) with a virtual lan in the outpu

[Shorewall-users] Shorewall Lite

2014-04-10 Thread Sassy Natan
Hi Group, i wanted to ask if I use a shorewall on my local machine, and copy the compile firewall output script to a a remote machine, why do I need to install shorewall lite? I mean I understand that the lite version taking care of things like running the firewall on restart, stop and start, b

Re: [Shorewall-users] Clarification on Multi-ISP

2014-04-09 Thread Sassy Natan
> Continuously Automate Build, Test & Deployment > Start a new project now. Try Jenkins in the cloud. > http://p.sf.net/sfu/13600_Cloudbees > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.n

Re: [Shorewall-users] Package for collection only ?

2014-02-06 Thread Sassy Natan
=/4140/ostg.clktrk > ___ > Shorewall-users mailing list > Shorewall-users@lists.sourceforge.net > https://lists.sourceforge.net/lists/listinfo/shorewall-users -- Regards, Sassy Natan 972-(05)54-2203702 ---

[Shorewall-users] Reverse IPTables Rules to Shorewall

2014-01-28 Thread Sassy Natan
Hi, I wanted to know if there is any way to convert existing IPTables rules into shorewall? If i have a machine manually configure to have 50 iptables rules without shorewall, is there a way to convert these rules to shorewall syntax? Sure I can create from scratch the rules files, but maybe the

[Shorewall-users] NetFlow/Sflow in Shorewall

2013-12-24 Thread Sassy Natan
help me better understand the relation with NFLOG + PCAP + NETFLOW + SFLOW Thanks you Sassy -- Regards, Sassy Natan 972-(05)54-2203702 -- Rapidly troubleshoot problems before they affect your business. Most IT organizatio

Re: [Shorewall-users] NFLOG

2013-12-13 Thread Sassy Natan
Hi Wanye Thanks for the replay! Was wonder if NFLOG support accounting module. At least shorewall support this according to http://www.shorewall.net/shorewall-accounting.html but I didn't manage to make it working Thanks Sassy On Sat, Nov 2, 2013 at 1:34 AM, Wayne S wrote: > At 10/31/2013 0

Re: [Shorewall-users] Accounting

2013-12-13 Thread Sassy Natan
Wonder is there is no auto way to do so? so when I create a rule - a corresponding accounting chain will be created as well. Thanks Sassy On Fri, Dec 13, 2013 at 6:56 PM, Simon Hobson wrote: > Sassy Natan wrote: > > Can I have accounting provide me not only the amount of traffic ou

[Shorewall-users] Accounting

2013-12-13 Thread Sassy Natan
Hi All, In the http://www.shorewall.net/manpages/shorewall-accounting.html it says NFLOG[(nflog-parameters)] - Added in Shorewall-4.4.20. However the manual doesn't say how to use it ACTION - {COUNT|DONE|*chain*[:{COUNT|JUMP}]|ACCOUNT(*table*,*network* )|[?]COMMENT *comment*} I tried to do COUN

[Shorewall-users] Accounting

2013-12-13 Thread Sassy Natan
Hi Group, I was wonder if it is possible to use shorewall-accounting with ULOG2 and NFLOG. My Goal is as follow: Say I have in rules something like this: accept fw all all accept all fw tcp 80,443 dropall all all with the following in accounting: web - eth0-

Re: [Shorewall-users] Shorewall Rule Name in Log

2013-10-31 Thread Sassy Natan
file? I saw the option logtagonly - but not sure if this what I need? Also, does this works with ULOG? NFLOG? Thanks Sassy On Thu, Oct 31, 2013 at 11:43 PM, Sassy Natan wrote: > Hi Group, > > Is there any way to present the rule name in the log file of shorewall? > &g

[Shorewall-users] Shorewall Rule Name in Log

2013-10-31 Thread Sassy Natan
Hi Group, Is there any way to present the rule name in the log file of shorewall? So if I have something like: #ACTION SOURCE DEST DROP:info netfw # RULE Test -- Andro

[Shorewall-users] NFLOG

2013-10-31 Thread Sassy Natan
Hi Group, Congratulation about shorewall.org ! No question shorewall is the best tool I know for playing with iptables rules! Second I wonder if any one can help me with the following: 1. I'm trying to configure a rule with the NFLOG option. I manage to make it work with ULOG withouy any problem

Re: [Shorewall-users] Fwd: monthdays in rules

2013-09-28 Thread Sassy Natan
Thank you! It is working. Shorewall is so powerfull! Thank u tom :-) On Sat, Sep 28, 2013 at 2:01 AM, Tom Eastep wrote: > On 09/27/2013 03:46 PM, Sassy Natan wrote: > > > > > > -- Forwarded message ------ > > From: *Sassy Natan* mailto:sas..

[Shorewall-users] Fwd: monthdays in rules

2013-09-27 Thread Sassy Natan
-- Forwarded message -- From: Sassy Natan Date: Fri, Sep 27, 2013 at 11:20 PM Subject: monthdays in rules To: shorewall-users@lists.sourceforge.net Hi Group I'm trying to configure a rule with a time condition this seems to work : localtz×tart=20:00×top=20:10&weekday