RE: lug-bg: Operation not permited
- Subject: RE: lug-bg: Operation not permited
- From: georgi.sinapov@xxxxxxxxxx (Georgi Sinapov)
- Date: Wed, 20 Nov 2002 17:39:36 +0200
Naprawi flush na wsi4ki chains i naprawi default policy da e ACCEPT. Togawa probwaj pak i ako raboti, slovi LOG rule na kraq na wsi4ki chains, startiraj fw script-a i ste move da widi6 kyde ti se spira paketa.
Best e-gards,
Georgi Sinapov
-----Original Message-----
From: Denislav [mailto:denikide@xxxxxxx]
Sent: Wednesday, November 20, 2002 2:15 PM
To: lug-bg@xxxxxxxxxxxxxxxxxx
Subject: Re: lug-bg: Operation not permited
znachi za OUTPUT veriga na netfiltera vuobshte niamam pravila i drugoto
koeto e che tova go dava oshte predi da sloza netfiltera .. a tova s suid
na ping-a prosto ne vizdam smisula da go slagam i prez root ne pingva
taka ili inache problema ne mi e da pingvam s user prosto dava takava
greshka pri ping. Ami tova ne znam prosto seda i se maia tuka ot kvo moze
da e.
öèòèðàì Àòàíàñ Ìàâðîâ <bugar@xxxxxxx>:
> Çäðàâåé,
> òîâà ñå ïîëó÷àâà çàùîòî ñè çàáðàíèë íåùî îò ðîäà íà
> iptables -P OUTPUT DROP
> îïðàâè ãî è íåùàòà ùå òðúãíàò
> Óñïåõ
> :-))))
>
> Íà 19 11 2002 08:22, Denislav íàïèñàõòå:
> > Zdraveite,
> > grupa znachi imam slednia problem. Imam host s 3 mrezovi karti 1-ta e
> s
> > istinsko IP i drugite dve sa s vutreshni kato na ednata e aliasnat
> > interfase sushto. Fakticheski stavat edin interface s istinsko IP a
> imeno
> > eth2 i tri s vutreshni IPta eth1 eth0:2 eth2. Znachi routing tablica
> > marshrutizacia na interne i vsichko ostanalo vurvi idealno ..
> edinstveno
> > imam problem kato se opitam da pingna niakoi host nezavismo ot koia
> mreza
> > i mi dava slednoto
> > Primer:
> > ping 192.168.2.2
> > PING 192.168.2.2 (192.168.2.2): 56 octets data
> > sendto: Operation not permitted
> > ping: sent 64 octets to 192.168.2.2, ret=-1
> > sendto: Operation not permitted
> > ping: sent 64 octets to 192.168.2.2, ret=-1
> > Ami tova e znachi forwardvat se adresite mezdu kartite. Maskira se
> celia
> > trafik ot -o eth2 -j MASQUERADE. I s iptables sum zabranil vruzki kum
> > porta na proxy servera koito e pusnat nishto poveche. No tova neshto
> go
> > davashe vednaga sled kato vdigna vsichki interfeisi i naglasia
> routinga.
> > I taka ako niakoi ima niakakva ideia neka spodeli.
> > Aide zivi i zdravi. :-)
============================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
============================================================================
|