On 07/06/2017 07:12 AM, Tom Eastep wrote: > On 07/06/2017 05:07 AM, Vieri Di Paola via Shorewall-users wrote: >> >> ________________________________ >> From: Vieri Di Paola via Shorewall-users >> <[email protected]> >>> >>> The next step is to find out how to write my snat files correctly. >> >> >> I tried the following, but it must be wrong: >> >> >> SNAT($IF_ISP4_IP) 0.0.0.0/0 $IF_ISP4 >> SNAT($IF_ISP3_IP) 0.0.0.0/0 $IF_ISP3 >> SNAT($IF_ISP2_IP) 0.0.0.0/0 $IF_ISP2 >> SNAT($IF_ISP1_IP) 0.0.0.0/0 $IF_ISP1 >> > > That will work -- the problem is that you have an old > /etc/shorewall/masq file -- get rid of that and the compiler will > process your snat file. >
Actually, that is wrong -- the file as converted by 'update' will work
if you just get rid of the masq file. The trace shows the masq file
being processed, but it appears to be simply
?IF $FW_TYPE
?ENDIF
-Tom
--
Tom Eastep \ Q: What do you get when you cross a mobster with
Shoreline, \ an international standard?
Washington, USA \ A: Someone who makes you an offer you can't
http://shorewall.org \ understand
\_______________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
