+ Post New Thread
Page 2 of 2 FirstFirst 12
Results 16 to 18 of 18
*nix Thread, IPTables Port Forwarding in Technical; Originally Posted by CyberNerd add another nic ? Can't add another, no slots. Will try adding a virtual interface (ie. ...
  1. #16

    localzuk's Avatar
    Join Date
    Dec 2006
    Thank Post
    Thanked 2,648 Times in 2,049 Posts
    Blog Entries
    Rep Power
    Quote Originally Posted by CyberNerd View Post
    add another nic ?
    Can't add another, no slots. Will try adding a virtual interface (ie. eth0:0 and eth0:1).

  2. #17

    Join Date
    Jan 2006
    Thank Post
    Thanked 1,033 Times in 813 Posts
    Rep Power
    I looked through this:
    IPTables forward question
    and compared my FW config (two interfaces)
    You may need to add the state NEW for new connections ?
    iptables -A FORWARD -p tcp -i [incoming interface] -o [outgoing interface] -d [ip address of target server] --dport 80 -m state --state NEW -j ACCEPT
    I get:

    ACCEPT     tcp  --  anywhere             anywhere            state NEW tcp dpt:www
    sorry if i'm being vague, its a bit out of my comfort zone

  3. #18

    Join Date
    May 2009
    Thank Post
    Thanked 6 Times in 6 Posts
    Rep Power
    Are both devices on the same subnet i.e. the firewall and webserver? If so then you'll need to SNAT these packets as well in the postrouting chain otherwise the packet from the webserver will go directly back to the client which then won't match any connections it initiated, the SYN ACK will be dropped and an RST packet will be sent to close the connection. If they're not on the same subnet let me know.

    Also, just a point but the rule in the forward chain isn't required as the chain's policy is accept, unless you specifically put a rule in to drop forwarded traffic all will be allowed with that policy.
    Last edited by funkymunky; 3rd June 2009 at 11:25 PM. Reason: Added more info

+ Post New Thread
Page 2 of 2 FirstFirst 12

Similar Threads

  1. D-Link DIR-655 router - Port Forwarding or Virtual Server?
    By link470 in forum Wireless Networks
    Replies: 10
    Last Post: 4th January 2012, 06:18 PM
  2. Cachepilot port forwarding
    By localzuk in forum General Chat
    Replies: 6
    Last Post: 29th October 2008, 09:55 AM
  3. IPTables - Port rules
    By ahuxham in forum *nix
    Replies: 2
    Last Post: 17th September 2008, 03:56 PM
  4. port forwarding problem
    By IA76 in forum Wireless Networks
    Replies: 3
    Last Post: 15th August 2008, 02:29 PM
  5. Replies: 3
    Last Post: 19th February 2008, 11:13 PM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts