Re: Rules don't allow my servers packets through

Nick Fedchik <nick-UvdXiu2sajOKBXSJ/[email protected]>
Newsgroups gmane.linux.network.bridge.ebtables.user
Message-ID <[email protected]>
В сообщении от Saturday 07 January 2006 01:52 Carlos Ramos написал(a):
> I'm sorry i didn't explain correctly.. the dns server is 10.10.1.10 so all
> clients query 10.10.1.10 and 10.10.1.10 querys the external dns server so
> has i am allowing all traffic in and out of the bridge for 10.10.1.10 it
> should work.. (i think ... but it doesn't :)

Well, check Your DNS logs - is it all correct on 53 socket. If it so, 
run 'tcpdump -en -i <iface for 10.10.1.10> port 53' onto another VT where You 
should see what's going on.
And I agree about arp (see the David Stanaway comments), so You probably 
should add some "-p ARP" rules.

Good Luck!

-- 
Best Regards, Nick Fedchik


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://ads.osdn.com/?ad_idv37&alloc_id865&op=click
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.