Branko Tanovic wrote:

> Please help what I am doing wrong.

Please read the IFB documentation again. Packets 'leaving' the IFB
device are *as they are on the wire*. That means that they will never
have addresses from your local network as either the SOURCE or
DESTINATION IP. Furthermore, they will not have gone through any
Netfilter hooks so they will not have any packet marks.

-Tom
-- 
Tom Eastep        \ The ultimate result of shielding men from the
Shoreline,         \ effects of folly is to fill the world with fools.
Washington, USA     \                                 -Herbert Spencer
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.Net email is sponsored by the Moblin Your Move Developer's challenge
Build the coolest Linux based applications with Moblin SDK & win great prizes
Grand prize is a trip for two to an Open Source event anywhere in the world
http://moblin-contest.org/redirect.php?banner_id=100&url=/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to