[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

problems in Forwarding in linux-based local network



hi,

I have little network with linux firewall  in local network that is
look  like this :

                             linux box

--------------
|--------
  Internet        |
|                                 little nework   |
-----------| eth0            eth1|--------------------------|
clients
                         |
|                                                           |-------

-------------|
|

|-------

I work with 2.0.36 kernel ,compiled with  all firewall's options  .
I  run ifconfig  up  for both  NIC's ,and I can telnet/ping from the
local network to the linux computer,and from the linux  to the
internet,but I can't ping  from the local net to the internet. I don't
know why  the linux  don't  forward the request's outside

I run:


 1)    ifconfig lo 127.0.0.1 // create loopback interface
     route add -host 127.0.0.1 lo
     ifconfig eth1 ....  up  //eth1 interface
     ifconfig eth0 .... up  //eth0 interface


2)some  data:
 /sbin/ipfwadm -I -l    :
                   IP firewall input rules, default policy: accept
                   type  prot source               destination
ports
                   acc   tcp  anywhere             localhost
any -> http
 /sbin/ipfwadm -F -l  :
                   IP firewall forward rules, default policy: accept




-Do you have any idea what's is the problem??


thanks,
Moshe Cohen
mcc@Cm236-ntw.cs.technion.ac.il

-- BEGIN included message

Hello Yoni,

> > Letting aside both my wrong answer and Mr. biggo@netvision.net.il obvious
> > problems with his well, eh.. *shortcomings*,  he does raise an interesting
> > point - what is this list for?
> 
> Man, politeness is your enemy, isnt it?

I am sorry to say this to you but you, Yoni, are the one who was impolite.
Not Gilad.  You are the one who wasted the time of the subscribers of the
Linux-IL mailing list with your newbie questions.

The Linux-IL FAQ and other resources provide the E-mail addresses of some
volunteers who would have been glad to help you in private, if you asked
them in private your questions.  They volunteered to field your newbie
questions so that the other list members won't have to waste their time
reading your questions.

If you were not sufficiently polite and considrate to spend your own time
looking for those volunteers before barging into the list itself and
wasting the time of the other list members, then you deserve whatever you
get.

If you found it to be difficult or impossible to look for those volunteers
(pointing out shortcomings of the FAQ or the Web site) then it would have
been fair and proper for you to post a message to the list about your
difficulties in locating those volunteers (with details of where you
looked for volunteers).  Such a message would have informed us what we
have to improve in the FAQ and the Web site in order to help better
polite&considrate newbies.

But instead of such a constructive action, you post a newbie question to
the Linux-IL mailing list and then whine about the treatment you got from
other members.  Go jerk off your impotent organ, loser!

> > That's right, Mr. Biggo, not all questions are welcomed! They haven't been
> > welcomed here from before this list organized the the second show at
> > Computex where I helped carry those Alpha's to "Ganey Ha Tarooha", they
> > weren't welcome when the people of this list were guests in my house in an
> > "official" Linux-il meating (no! it's not a spelling mistake ;-) and they
> > were not welcomed since before this list had an FAQ (have you ever read
> > it?).
> 
> So you are veteran, that makes you what? god?

Gilad is not God, but he expressed an opinion with which several other
Linux-IL members (including me) agree.  Even those who disagree now, would
with time see the truth of Gilad's opinion and come to agree with it - as
they see more and more examples of newbie questions (like your questions)
and realize how repetitive and time-wasting are those questions.

> > So you see, my dear "Biggo", I said what I said with (some) authority.  Of
> > course, times change. Maybe the people on the list today think otherwise.
> > But unless you're willing to organise enough peple rise up and say: "Yes!
> > Linux-il is fr newbie questions!" then the Status-Quo remains - this list is
> > for a *professional* discussions about Linux in general and in Israel.
> > Questions about problems downloading files from Finland are off-topic.
> 
> That is correct, and your twisting my words.
> I have said that problems regarding to gzip or anything similar is is
> (somewhat) on topic.

Maybe, if they were not newbie problems.  Trouble is that your problems
were newbie problems.  Even if you were not sure if they are newbie or
professional level, you should have first asked a volunteer and only if he
could't help you, then it would have been proper for you to the list
itself. 

> > Just take into account that for list such as this to have any value, the
> > noise to data ratio must be below a certain level, after which the list is
> > useless. At that point the people in the know form other means of
> > communication and the rest of the bunch stays to "enjoy" post such as the
> > subject of this thread.

AMEN!

> > One can very well see that this proccess has already began with Linux-il,
> > but does not mean that it cannot be reversed. The question is basically,
> > what do you want this list to be?
> 
> Well, thats rather elitistic.
> the "This list is for serious hackers, beware you lamer dumbass" kind.
> AFAIK Linux was created for all. not only for veteran elitistic snobs.
> In one hand I hear "lets form insta-parties and help people with linux",
> but on the other hand I hear "go away you're distubing me, you
> low-lifes" and
> "If you dont know Linux, dont use it, asshole" from you.

This "elitist" policy was formed after long experience with other Internet
mailing lists.  We realized early on the game that there are newbies, who
need to be given helping hand.  We organized so that they will receive the
help, which they need without disturbing more than one or two "elitist" 
"veteran" volunteers.  If you did not take advantage of this organization,
then it is your own error.  Go jerk off your impotent organ, loser! 

> Yes I'm new here, If thats the spirit (which I havnt discovered since
> today),
> I would proudly say "You're making me sick, arogant bastards".
> But from my point of view this is not.
> (if it does please tell me and I'll unsubscribe in a jiffy)

The rules of the list were formulated, among other things, to allow
newbies to be helped with minimum of time waste of the old timers.  If you
prefer not to follow those rules and thus make nuisance of yourself, then
it's just too bad.  Go jerk off your impotent organ, loser! 

> then I guess this list is a flame list!
> forget newbie's questions annoying you, lets make war!
> get over it man.

Once each few months we have such a flame war with a newbie whiner.  This
time it was your turn, Yoni, to be that newbie whiner.  You are not the
first to invent this kind of complaint.  Neither will you be the last, I
am afraid.
                                             --- Omer
WARNING:
By sending me unsolicited commercial/political/religious/MailPush
E-mail message/s (known also as "spam"), you irrevocably agree to
pay me US$500.- (plus any legal expenses incurred by my trying to
collect the amount due) per unsolicited commercial/political/
religious/MailPush E-mail message - for the service of receiving it.


-- END included message