Tom Eastep wrote:

> 
> --------------------------------------------------------------------------
> 
> To protect the first box.
> 
> Follow the two-interface quickstart guide but instead of adapting
> /etc/shorewall/masq to your configuration, simple remove the entry from
> that file.

Actually, you need to do a bit more. You need to add a 'net   loc
ACCEPT' policy as well so that all traffic routed to the second box is
accepted'.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Come build with us! The BlackBerry(R) Developer Conference in SF, CA
is the only developer event you need to attend this year. Jumpstart your
developing skills, take BlackBerry mobile applications to market and stay 
ahead of the curve. Join us from November 9 - 12, 2009. Register now!
http://p.sf.net/sfu/devconference
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to