[tproxy] tproxy Digest, Vol 55, Issue 5

KOVACS Krisztian hidden at balabit.hu
Tue Jan 12 13:41:32 CET 2010


Hi,

On 01/12/2010 12:27 PM, Luiz Biazus wrote:
> Hello Krisztian!
>
> is that what i mean!
>
> follow my full configuration:
>
> echo 1>  /proc/sys/net/ipv4/ip_forward
> echo 1>  /proc/sys/net/ipv4/ip_nonlocal_bind
> echo 1>  /proc/sys/net/ipv4/conf/eth0/rp_filter
> echo 1>  /proc/sys/net/ipv4/conf/eth1/rp_filter
> echo 1>  /proc/sys/net/ipv4/conf/br0/rp_filter
> echo 1>  /proc/sys/net/ipv4/conf/lo/rp_filter
> echo 1>  /proc/sys/net/ipv4/conf/all/forwarding
> echo 1>  /proc/sys/net/ipv4/conf/all/send_redirects

You should try and disable rp_filter -- I think that won't out-of-the 
box with the routing rules you have.

echo 0 >  /proc/sys/net/ipv4/conf/eth0/rp_filter
echo 0 >  /proc/sys/net/ipv4/conf/eth1/rp_filter
echo 0 >  /proc/sys/net/ipv4/conf/br0/rp_filter
echo 0 >  /proc/sys/net/ipv4/conf/lo/rp_filter

Cheers,
Krisztian


More information about the tproxy mailing list