| Author |
Thread Statistics | Show CCP posts - 0 post(s) |

Ufa
|
Posted - 2006.12.24 12:25:00 -
[1]
Hi,
Some more info needed. Please post 1) the result of the command "route -n" 2) the result of the command "iptables -L -n -t nat" 3) the result of the command "iptables -L -n" 4) the result of the command "ifconfig"
feel free to replace ipnumbers with x.x.x.x (just use different replacements for different ip numbers).
|

Ufa
|
Posted - 2006.12.24 12:40:00 -
[2]
the line: iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -i ppp0 -j MASQUERADE allready masquerades all ports. Also his forward policy is set to accept. So this problem isnt related to a specific port not being allowed.
The problem might have something to do with: ppp0 not being his default gateway 2 of his interfaces have the same ipnumber (this should not even be possible)
|

Ufa
|
Posted - 2006.12.24 13:58:00 -
[3]
try replacing iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -i ppp0 -j MASQUERADE with iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -j MASQUERADE
why?: The first line says masquerades all packets from 192.168.111.0/24 ariving on ppp0 Which won't happen. Those packets arive on an eth? interface.
If you're paranoid, replace iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -i ppp0 -j MASQUERADE with iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -i eth1 -j MASQUERADE iptables -t nat -A POSTROUTING -s 192.168.111.0/24 -d 0/0 -i eth2 -j MASQUERADE
Hope this helps.
|

Ufa
|
Posted - 2006.12.25 10:33:00 -
[4]
can you send me the whole tcpdump?
tcpdump -i ppp0 -n > dump
start the dump before u start the eve-client and ctrl-c it after you receive the timeout message.
you can mail me at [email protected] (temp email address)
|

Ufa
|
Posted - 2006.12.25 23:00:00 -
[5]
these lines dont make sense: 21:56:11.490811 IP 87.237.38.200.26000 > 10.11.73.239.1193: P 3033:3285(252) ack 730 win 64806 21:56:11.491399 IP 10.11.73.239.1193 > 87.237.38.200.26000: . ack 113 win 65423 <nop,nop,sack 1 {3033:3285}>
252 bytes are send but only 113 are acked? strange.
This probably isnt a linux problem at all. It just forwards the packages as it should. I think it might be a problem with your workstation.
So, at your workstation rightclick "My network places" -> properties rightclick "Local area connection" -> properties click configure click advanced If you see "checksum offload" or "segmentation offload", put them on disabled.
if they were both disabled, please post/mail this.
if they werent, please try connecting to eve and let me know if it works now
|
| |
|