Hi all,

    I am having an issue with a multiple ISP setup.  I have followed the
docs online and I think I have everything setup correctly but I can
get the desired traffice to go out my secondary ISP.

A quick run down on what I am trying to acomplish.  I want to send all
sip/iax traffic out one ISP in the net zone and then send all other
traffic out my secondary ISP in the dsl zone.
Attached is my running config.

I'm sure I am just missing some little thing in the packet marking or
something.

What keeps happening is that I get martian packets on my secondary ISP
interface.

Here is what is reported from the logs.

Sep 19 22:56:43 pfars kernel: Shorewall:loc2all:ACCEPT:IN=eth1 OUT=eth0
SRC=10.0.0.94 DST=66.114.106.8 LEN=48 TOS=0x00 PREC=0x00 TTL=127 ID=1321
DF PROTO=TCP SPT=1112 DPT=110 WINDOW=65535 RES=0x00 SYN URGP=0
Sep 19 22:56:43 pfars kernel: martian source 10.0.0.94 from 66.114.106.8,
on dev eth0
Sep 19 22:56:43 pfars kernel: ll header:
00:60:08:39:56:93:00:02:3b:01:47:df:08:00

Says the packet is accepted but the response back generates a martian source.


Thanks in advance for any help.
Jon Scottorn
Systems Administrator
The Possibility Forge, Inc.
http://www.possibilityforge.com

Attachment: runningconfig
Description: Binary data

-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys -- and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to