On 02/07/2018 12:59 PM, Bill Shirley wrote:
> "However from the phone I cannot connect to my LAN and WLAN subnetworks."
> 
> How did you try to "connect"?  Ping? SSH?
> 
> What address did the Android device get?  Can you ping it from the
> Shorewall> machine?

Not with his current Shorewall configuration - the effective $FW->road
policy is REJECT and there is no rule permitting pings $FW->road.

> Can you ping the Android device from a device on the LAN? WLAN?
> 

While pinging, it would be good to be running:

    tcpdump -ni tun0 icmp

That way, you can see the ping traffic going out tun0 and coming in that
interface.

-Tom
-- 
Tom Eastep        \   Q: What do you get when you cross a mobster with
Shoreline,         \     an international standard?
Washington, USA     \ A: Someone who makes you an offer you can't
http://shorewall.org \   understand
                      \_______________________________________________

Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to