Shorewall Guy wrote:
> Mark Rutherford wrote:
>> Thanks for taking a crack at it.
>> Here is the updated dump.
>> I tried port 80 and 21 from 70.60.208.84 to 216.176.235.187 with no joy.
>
> Sigh -- I wanted you to CHANGE THE PRIORITY to 11000, not duplicate the
> rule. *It never makes any sense to have exactly the same rule with two
> different priorities*
And if you did just change the priority rather than duplicate the rule,
then we must have a bug -- you can fix the problem by executing this
command as root:
ip rule delete from all iif eth2 lookup Twc pri 1000
And while you are at it, you can also do this one:
ip route delete default via 216.176.235.185 dev eth1
------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users