[Shorewall-users] traceroutes from behind shorewall

Tom Eastep teastep@shorewall.net
Wed, 23 Jan 2002 18:06:16 -0800


On Wednesday 23 January 2002 06:00 pm, Ted Leung wrote:
> Hi,
>
> Is there a good way to enable traceroutes from behind a shorewall
> firewall?
>

If you are running traceroute from a system is zone z1 and the target of =
the=20
traceroute is in zone z2 then:

ACCEPT=09z1=09z2=09udp=09traceroute

-Tom
--=20
Tom Eastep    \ A Firewall for Linux 2.4.*
AIM: tmeastep  \ http://www.shorewall.net
ICQ: #60745924  \ teastep@shorewall.net