[Shorewall-users] Rules for PPTP?

Tom Eastep teastep@shorewall.net
Mon, 08 Jul 2002 16:31:10 -0700


j2 wrote:
> I tried the following as per the Documentation, but i get
> 
> #
> #PPTP
> DNAT           net     loc     tcp     1723
> DNAT           net     loc     47      -
> #LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE
> 
> Error: DNAT rules require a  server address; rule: "DNAT net loc tcp 1723"
> 
> when doing a check/restart?
> 
> Firewall with one public IP. A w2k Pro living behind it is to act as PPTP
> server on 192.168.0.160. Uhm i am sure i am missing some RTFM (but i DID
> read the errata this time Tom, promise! ;) )
> 

Duh -- looks like I get to wear the pointy hat this time. Try:

DNAT           net     loc:192.168.0.160     tcp     1723
DNAT           net     loc:192.168.0.160     47      -

And I'll fix the documentation...

-Tom

-- 
Tom Eastep    \ Shorewall - iptables made easy
AIM: tmeastep  \ http://www.shorewall.net
ICQ: #60745924  \ teastep@shorewall.net