Problems with iptables?

Roger Grosswiler roger at gwch.net
Mon Aug 13 06:14:17 UTC 2007


Since the last update, i have several problems with iptables.

I have a firewall with several nics built-in.

-> i have forwarding enabled (/proc/sys/net/ipv4/ip_forward = 1)
-> i have no further forwarding rule in iptables, except the default one
-> i inserted source-nat-rules on the outgoing devices
-> with squid, i use the transparent-proxying-script
-> that script redirects all queries on port 80 to port 3128 (where squid is listen on)
-> for the inner lan, the nic is trusted

so, since the last update, no forwarding, except passing through squid (web only), and
only if i configure firefox with the proxy-settings. No redirection from outgoing port
80 to 3128 is done by iptables.

It also seems, that masquerading does no longer work on the outgoing interfaces. Are
there known issues about iptables or the last kernel?


Thanks for your help.
Roger




More information about the fedora-list mailing list