On 2/25/13 4:53 PM, "Steven Jan Springl" <[email protected]> wrote:
>After the application of the patch snat entry: > >eth0 2001:1::/56 [2001:470:a:227::2]-[2001:470:a:227::10]:1000 tcp > >Generates ip6tables rule: > >-A eth0_masq -p 6 -s 2001:1::/56 -j SNAT --to-source >[2001:470:a:227::2]-[2001:470:a:227::10]:1000 > >Which produces error message: > >ip6tables-restore v1.4.17: Invalid port:port syntax - use dash Hmmm -- ip6tables likes [<addr1>-<addr2>]:[port1[:port2]]. The attached patch enforces this restriction in Shorewall6 as well. Thanks Steven, -Tom You do not need a parachute to skydive. You only need a parachute to skydive twice.
ADDRRANGE1.patch
Description: Binary data
------------------------------------------------------------------------------ Everyone hates slow websites. So do we. Make your web apps faster with AppDynamics Download AppDynamics Lite for free today: http://p.sf.net/sfu/appdyn_d2d_feb
_______________________________________________ Shorewall-devel mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-devel
