[Shorewall-users] MASQ !!

Tom Eastep teastep@shorewall.net
Wed, 9 Jan 2002 21:05:22 -0800


On Thursday 10 January 2002 10:31 am, huytu@mail.com wrote:
> Dear shorewall-users,
>   My MASQ command is below:
> iptables -A POSTROUTING -s 10.20.1.0/255.255.255.0 -o eth3 -j MASQUERAD=
E
>
> And i want to only :
> iptables -A POSTROUTING -s 10.20.1.0/255.255.255.0  -j MASQUERADE
>
>
> Can i do it with Shorewall ?

Why are you using iptables commands for MASQUERADE with Shorewall? You=20
specify masquerading in /etc/shorewall/masq and you can COMPLETELY contro=
l=20
which subnets get masqueraded to which interfaces using that file.

-Tom
--=20
Tom Eastep    \ A Firewall for Linux 2.4.*
AIM: tmeastep  \ http://www.shorewall.net
ICQ: #60745924  \ teastep@shorewall.net
-------------------------------------------