On 2/25/13 4:53 PM, "Steven Jan Springl" <[email protected]> wrote:

>After the application of the patch snat entry:
>
>eth0  2001:1::/56  [2001:470:a:227::2]-[2001:470:a:227::10]:1000  tcp
>
>Generates ip6tables rule:
>
>-A eth0_masq -p 6 -s 2001:1::/56 -j SNAT --to-source
>[2001:470:a:227::2]-[2001:470:a:227::10]:1000
>
>Which produces error message:
>
>ip6tables-restore v1.4.17: Invalid port:port syntax - use dash

Hmmm -- ip6tables likes [<addr1>-<addr2>]:[port1[:port2]]. The attached
patch enforces this restriction in Shorewall6 as well.

Thanks Steven,

-Tom
You do not need a parachute to skydive. You only need a parachute to
skydive twice.



Attachment: ADDRRANGE1.patch
Description: Binary data

------------------------------------------------------------------------------
Everyone hates slow websites. So do we.
Make your web apps faster with AppDynamics
Download AppDynamics Lite for free today:
http://p.sf.net/sfu/appdyn_d2d_feb
_______________________________________________
Shorewall-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-devel

Reply via email to