RE: [Linux-ag] iptables - sorun

---------

New Message Reply About this list Date view Thread view Subject view Author view Attachment view

From: OfisNET ANTALYA (antalya@ofisnet.biz)
Date: Thu 14 Oct 2004 - 12:16:43 EEST


Anladigim kadari ile subnetler 255.255.0.0 verilmis.

Firewall u kurarkende, baslangic kurallarında tüm forwardlari düsürmemissin,
bu durumda asagidaki iki komut fazlasiyla yeterli.Bir tanesini de yazmanin
yeterli olacagi kanisindayim.Cevap alamayacagi icin zaten ulasamaz.Kural
fazlaligi yavasliga sebeb olabilir.

iptables -A FORWARD -i eth1 -o eth2 -j DROP

iptables -A FORWARD -i eth2 -o eth1 -j DROP

 

Emrah ŞEN

 

-----Original Message-----
From: linux-ag-bounces@liste.linux.org.tr
[mailto:linux-ag-bounces@liste.linux.org.tr] On Behalf Of mustafa ozturk
Sent: Thursday, October 14, 2004 11:39 AM
To: linux_ag linux_ag
Subject: [Linux-ag] iptables - sorun

 

Herkese kolay gelsin;

server ima Slackware kurdum.Uzerinde 3 adet ethernet karti var.

 

----------------------------------------------------------------------------
----------------------------------------------------

192.168.1.50 (adsl cikisim) (eth0) ----------------------->
192.168.1.1(adsl modemim)

192.168.15.50 (1.network) (eth1) ----------------------->
192.168.15.x

192.168.14.50 (2.network) (eth2) ----------------------->
192.168.14.x

----------------------------------------------------------------------------
----------------------------------------------------

1. ve 2. network deki client larimi server uzerinden Nat yaparak internete
cikariyorum.

 

# iptables -t nat -A POSTROUTING -o eth0 -j MASQUERADE

Bu sekildeyken problem yokmus gibi gozukuyor.Fakat benim istedigim.1. ve 2.
networkdeki bilgisayarlarin birbirlerine ulasamamasi.Bu orunu cozemedim.1.
networkdeki bilgisayarlara ag gecidi olarak 192.168.15.50 vardigim zaman
internete cikiyorlar ama 192.168.14.X agindaki PC leride goruyorlar.Ayni sey
2. network icinde gecerli.

 

Yapmam gereken nedir.Yardimci olursaniz cok sevinirim....

   _____

Do you Yahoo!?
HYPERLINK
"http://us.rd.yahoo.com/mail_us/taglines/msgr/evt=26088/*http:/messenger.yah
oo.com"Y! Messenger - Communicate in real time. Download now.

---
Incoming mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.776 / Virus Database: 523 - Release Date: 12.10.2004

--- Outgoing mail is certified Virus Free. Checked by AVG anti-virus system (http://www.grisoft.com). Version: 6.0.776 / Virus Database: 523 - Release Date: 12.10.2004

_______________________________________________
Linux-ag mailing list
Linux-ag@liste.linux.org.tr
http://liste.linux.org.tr/mailman/listinfo/linux-ag


New Message Reply About this list Date view Thread view Subject view Author view Attachment view

---------

Bu arsiv hypermail 2.1.2 tarafindan uretilmistir.