From 8f0e95733f837138f818e3496f782a9bd9f9f1b4 Mon Sep 17 00:00:00 2001 From: teastep Date: Tue, 12 Sep 2006 20:29:03 +0000 Subject: [PATCH] Update the Troubleshooting Guide some more git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@4571 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb --- docs/troubleshoot.xml | 27 +++++---------------------- 1 file changed, 5 insertions(+), 22 deletions(-) diff --git a/docs/troubleshoot.xml b/docs/troubleshoot.xml index ea4d78437..11f839d2d 100644 --- a/docs/troubleshoot.xml +++ b/docs/troubleshoot.xml @@ -104,9 +104,9 @@ iptables: No chain/target/match by that name - Changing the IP address of a local system to be in the external - subnet, thinking that Shorewall will suddenly believe that the system - is in the net zone. + Trying to test net->loc DNAT rules from inside your firewall. + You must test these rules from outside your firewall. @@ -400,25 +400,8 @@ Ping/DROP net all Do you have your kernel properly configured? Click here to see my kernel - configuration. - - - - Shorewall requires the ip program. That program - is generally included in the iproute package which - should be included with your distribution (though many distributions - don't install iproute by default). You may also download the latest - source tarball from http://developer.osdl.org/dev/iproute2/download/ - . - - - - Problems with NAT? Be sure that you let Shorewall add all - external addresses to be use with NAT unless you have set ADD_IP_ALIASES =No - in /etc/shorewall/shorewall.conf. + url="kernel.htm">Click here to see kernel configuration + information.