On 7/27/2014 10:11 PM, sur...@emailengine.net wrote: > Inbound access seems to be behaving. > > But, when 'vpn' provider is enabled, this resulting rule > >> Table vpn: >> ... >> default via 10.0.0.1 dev tun1 src 10.0.0.2 > > ends up capturing all outbound, port-25 traffic from anywhere on my LAN and > pushing it out tun1. > > I want to limit that to JUST traffic from SMTP port 25 being pushed out tun1. > > Tom, is that done with the > > /mangle > MARK(2):P eth1 - tcp 25 > > rule you'd suggested? needs to be limited to just a single IP?
Then change that rule to only apply to a single IP -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Infragistics Professional Build stunning WinForms apps today! Reboot your WinForms applications with our WinForms controls. Build a bridge from your legacy apps to the future. http://pubads.g.doubleclick.net/gampad/clk?id=153845071&iu=/4140/ostg.clktrk
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users