LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 05-19-2003, 07:58 AM   #1
cam99
LQ Newbie
 
Registered: Jan 2003
Posts: 7

Rep: Reputation: 0
Unhappy Ip sharing wont let me out


I am attempting to set up a Mandrake 9.1 to work as a router/firewall and am having some problems with it in the security routing area.
At least that's what I think?

It didn't like the IP address that I wanted to use so I went with its suggestion of 192.168.1.1 and reconfigured everything else on the network.

Also set the internet connections to use my ISP's DNS of 203.12.160.35 and 36 with a modem providing the connection.

The Mandrake PC will browse the net without a problem if I ping the gateway from a windows PC I get "destination host unreachable"

I have overcome this by setting the Drake Firewall to "Everything no fire wall"

But am still unable to get out to the internet from the windows PC.
The windows PC has the gateway set to 192.168.1.1 and the DNS settings to 203.12.160.35 and 36 and now sucessfully pings the gateway.


# route -n
executed on the gateway returns as the last line

Destination, Gateway, Genmask, Flags, UseIface,
0.0.0.0 203.29.131.72 0.0.0.0 UG ppp0

The gateway above 203.29.131.72 is the same as the remote address on the KPPP stastics for the modem.
So it should be able to find it's way out?
That is if it could get that far.

Is their a security setting I need?
 
Old 05-19-2003, 08:10 AM   #2
bentz
Member
 
Registered: Mar 2003
Distribution: Fedora, Mac OSX
Posts: 362

Rep: Reputation: 30
You have to configure ip forwarding and ip masquerading. If you are using Mandrake, I suggest you use iptables. Review the documentation at www.netfilter.org.
 
Old 05-19-2003, 09:46 PM   #3
Robert0380
LQ Guru
 
Registered: Apr 2002
Location: Atlanta
Distribution: Gentoo
Posts: 1,280

Rep: Reputation: 47
oh man, dont forget this:

#echo 1 > /proc/sys/net/ipv4/ip_forward

that turns on ip forwarding. its off by default in RedHat, not sure what the default is in Mandrake but you can check it like this:

#cat /proc/sys/net/ipv4/ip_forward

if you get 0 then its off if you get 1 then its on. This goes in addition to setting up the iptables stuff.
 
Old 05-20-2003, 06:57 AM   #4
cam99
LQ Newbie
 
Registered: Jan 2003
Posts: 7

Original Poster
Rep: Reputation: 0
Thanks guys.
I have grabbed a bunch of stuff from netfilter to read.
 
Old 05-20-2003, 07:27 AM   #5
bentz
Member
 
Registered: Mar 2003
Distribution: Fedora, Mac OSX
Posts: 362

Rep: Reputation: 30
Ip forwarding should be disabled by default everywhere, based on the assuption that a typical PC will not have more than one network interface in it that needs to talk to the other interfaces.

Robert, (assuming RH) another option for a permanent firewall/router is to modify /etc/sysctl.conf and change
net.ipv4.ip_forward = 1
and do a /etc/rc.d/init.d/network restart
Something to consider...
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
mandrake 10.1 sharing files and internet sharing xfiles_arram Linux - Networking 0 05-21-2005 02:22 PM
how to get primary logon network, Access control,File sharing & printer sharing info dileepkk Linux - Networking 2 07-06-2004 06:54 AM
2 probs, apt-get wont download anything. blackbox wont install minibootsy Linux - Software 2 06-10-2004 01:55 AM
Suse 9, RH9 wont install properly. Mandrake 9 wont boot properly? Help. l2ich84 Linux - Newbie 1 01-31-2004 11:02 AM
sharing internet through eth0 to sl0, iptables wont work Oxagast Linux - Networking 2 08-11-2003 07:36 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 07:21 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration