From: Tom E. <te...@sh...> - 2002-08-22 13:42:21
|
On Thursday 22 August 2002 01:23 am, Louie M. wrote: > I can't get NAT working when I upgraded from kernel 2.4.18 to 2.4.19 > <snip> > ++ echo -t nat -A OUTPUT -d 216.31.155.67 -j DNAT --to-destination > 192.168.1.3 ++ sed 's/!/! /g' > + iptables -t nat -A OUTPUT -d 216.31.155.67 -j DNAT --to-destination > 192.168.1.3 > iptables: Invalid argument > + '[' -z '' ']' > + stop_firewall > + stopping=3DYes > + deletechain shorewall > + qt iptables -L shorewall -n > + iptables -L shorewall -n > + run_user_exit stop > > Invalid argument? > <snip> > > nat > #EXTERNAL INTERFACE INTERNAL ALL INTERFACES LOCAL > 216.31.155.67 eth0 192.168.1.3 Yes Yes=20 > 216.31.155.68 eth0 192.168.1.4 Yes Yes = =20 Change the LOCAL column to "No" in all records -- your kernel doesn't sup= port=20 NAT in the output chain. Since that never worked in previous kernels, you= =20 aren't going to notice any difference. -Tom --=20 Tom Eastep \ Shorewall - iptables made easy AIM: tmeastep \ http://www.shorewall.net ICQ: #60745924 \ te...@sh... |