Re: interface or source ip match using brouting - transparent proxy

Bart De Schuymer <[email protected]> Wed, 19 Apr 2006 22:41:18 +0200
Newsgroups gmane.linux.network.bridge.ebtables.user
Message-ID <[email protected]>
Op wo, 19-04-2006 te 14:29 +0300, schreef Andrius Kazimieras
Kasparavičius:
> hi, internally I am using 10/8 ip network and internal bridge card is
> eth1, I am using iptables and ebtables. I want only internal trafic
> incoming through eth1 to proxy, so I use:
> 
> ebtables -t broute -A BROUTING -p IPv4 -i eth1 --ip-src 10.0.0.0/8
> --ip-protocol 6 --ip-destination-port 80 -j redirect --redirect-target
> ACCEPT
> 
> but I try to swap cables between eth0 and eth1, and all works the same
> way, even when I change client IP. Once tried match by source MAC, it
> did not work as well. I tried with ubuntu breezy and 
> now latest dapper wit 2.6.15 kernel. Please advise me if I am doing
> something wrong way or ebtables just does not support that way and I
> should go other way?

Please give an exact description of what you think is supposed to happen
and what is actually happening.




-------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid0709&bid&3057&dat1642