Re: problem with IP Masquerade in etch

2009-03-28 Thread Long Wind
It seems I have found out the cause: My script is simple: It does Masquerading It allows the client to visit ONLY one Web site. So for FORWARD chain, all traffic is blocked except from/to the Web site and 2 DNS servers. These are OK with sarge (kernel 2.4) and etch (kernel 2.6) for INPUT and OUTPU

Re: problem with IP Masquerade in etch

2009-03-28 Thread Alex Samad
On Sat, Mar 28, 2009 at 08:49:23PM +, thveillon.debian wrote: > Long Wind a écrit : > > "nf_conntrack*" does not exist in "modprobe -l " listing > > > > On Sat, Mar 28, 2009 at 9:54 AM, thveillon.debian > > wrote: > >> I don't run Etch, but my guess would be to check the modules names with >

Re: problem with IP Masquerade in etch

2009-03-28 Thread thveillon.debian
Long Wind a écrit : > "nf_conntrack*" does not exist in "modprobe -l " listing > > On Sat, Mar 28, 2009 at 9:54 AM, thveillon.debian > wrote: >> I don't run Etch, but my guess would be to check the modules names with >> modprobe -l , see if the ip_conntrack* haven't been renamed in >> "nf_conntra

Re: problem with IP Masquerade in etch

2009-03-28 Thread Long Wind
"nf_conntrack*" does not exist in "modprobe -l " listing On Sat, Mar 28, 2009 at 9:54 AM, thveillon.debian wrote: > I don't run Etch, but my guess would be to check the modules names with > modprobe -l , see if the ip_conntrack* haven't been renamed in > "nf_conntrack*" for instance... > > Tom >

Re: problem with IP Masquerade in etch

2009-03-28 Thread thveillon.debian
Long Wind a écrit : > I don't use KDE > I hate those big software that are not very useful > My requirement is simple: masquerading that allow clients to visit > only some sites. > My script works in sarge! > Is there anyone that can make a few correction to make my script work in etch? > I don't

Re: problem with IP Masquerade in etch

2009-03-28 Thread Long Wind
I don't use KDE I hate those big software that are not very useful My requirement is simple: masquerading that allow clients to visit only some sites. My script works in sarge! Is there anyone that can make a few correction to make my script work in etch? On Sat, Mar 28, 2009 at 7:38 AM, thveillon

Re: problem with IP Masquerade in etch

2009-03-28 Thread thveillon.debian
Long Wind wrote : > I install shorewall on etch > but I have not found it useful > My configuration is Masquerade that allow client machine to visit only > some sites. > > Can you recommend other frontends? > Hi, FWIW I have used "guidedog" as a masquerading frontend, together with guarddog for

Re: problem with IP Masquerade in etch

2009-03-28 Thread Long Wind
I install shorewall on etch but I have not found it useful My configuration is Masquerade that allow client machine to visit only some sites. Can you recommend other frontends? On Sat, Mar 28, 2009 at 4:05 AM, Andrei Popescu wrote: > On Sat,28.Mar.09, 03:20:25, Long Wind wrote: >> I have a scri

Re: problem with IP Masquerade in etch

2009-03-28 Thread Andrei Popescu
On Sat,28.Mar.09, 03:20:25, Long Wind wrote: > I have a script > It is copy and modify from IP Masquerade howto > It allows clients to visit only one site > It works in sarge (kernel 2.4), but not in etch (kernel 2.6) > > Attached is the script Instead of going with some script from some site you