mirror of
https://gitlab.com/shorewall/code.git
synced 2025-06-20 17:58:07 +02:00
Update the Troubleshooting Guide some more
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@4571 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
parent
146e88b747
commit
8f0e95733f
@ -104,9 +104,9 @@ iptables: No chain/target/match by that name
|
|||||||
</listitem>
|
</listitem>
|
||||||
|
|
||||||
<listitem>
|
<listitem>
|
||||||
<para>Changing the IP address of a local system to be in the external
|
<para>Trying to test net->loc DNAT rules from inside your firewall.
|
||||||
subnet, thinking that Shorewall will suddenly believe that the system
|
You must test these rules from <emphasis
|
||||||
is in the <quote>net</quote> zone.</para>
|
role="bold">outside</emphasis> your firewall.</para>
|
||||||
</listitem>
|
</listitem>
|
||||||
|
|
||||||
<listitem>
|
<listitem>
|
||||||
@ -400,25 +400,8 @@ Ping/DROP net all</programlisting>
|
|||||||
|
|
||||||
<listitem>
|
<listitem>
|
||||||
<para>Do you have your kernel properly configured? <ulink
|
<para>Do you have your kernel properly configured? <ulink
|
||||||
url="kernel.htm">Click here to see my kernel
|
url="kernel.htm">Click here to see kernel configuration
|
||||||
configuration</ulink>.</para>
|
information</ulink>.</para>
|
||||||
</listitem>
|
|
||||||
|
|
||||||
<listitem>
|
|
||||||
<para>Shorewall requires the <quote>ip</quote> program. That program
|
|
||||||
is generally included in the <quote>iproute</quote> package which
|
|
||||||
should be included with your distribution (though many distributions
|
|
||||||
don't install iproute by default). You may also download the latest
|
|
||||||
source tarball from <ulink
|
|
||||||
url="http://developer.osdl.org/dev/iproute2/download/">http://developer.osdl.org/dev/iproute2/download/</ulink>
|
|
||||||
.</para>
|
|
||||||
</listitem>
|
|
||||||
|
|
||||||
<listitem>
|
|
||||||
<para>Problems with NAT? Be sure that you let Shorewall add all
|
|
||||||
external addresses to be use with NAT unless you have set <ulink
|
|
||||||
url="Shorewall_and_Aliased_Interfaces.html">ADD_IP_ALIASES</ulink> =No
|
|
||||||
in <filename>/etc/shorewall/shorewall.conf</filename>.</para>
|
|
||||||
</listitem>
|
</listitem>
|
||||||
</itemizedlist>
|
</itemizedlist>
|
||||||
</section>
|
</section>
|
||||||
|
Loading…
x
Reference in New Issue
Block a user