Tim Smith wrote:
> My config is:
>
> WinXP --- Linux box --- DSL modem --- internet
Hmmm....same here. Except we have Win98 running....strange...
>
> and it works fine. Here's how I've got things set up (the DSL modem is on
> eth1, and my LAN is on eth0):
Yes, we have it the other round. eth0 is DSL and eth1 is LAN.
> [list of rules]
Well, I took the built-in "firewall" shipped with Woody. The strange thing is
that older versions of DAoC work fine with our system. So I think there is a
little bug in the german version of ToA.
Here are my rules of FORWARD an *ROUTING chains / tables:
Chain FORWARD (policy DROP)
target prot opt source destination
ACCEPT tcp -- anywhere anywhere tcp dpt:webcache
ACCEPT all -- 192.168.1.0/24 1.1.1.0/24
ACCEPT all -- 1.1.1.0/24 192.168.1.0/24
ACCEPT all -- 1.1.1.0/24 anywhere
ACCEPT all -- anywhere anywhere state
RELATED,ESTABLISHED
ACCEPT all -- 192.168.1.0/24 anywhere
ACCEPT all -- anywhere anywhere state
RELATED,ESTABLISHED
LOG all -- anywhere 1.1.1.0/24 LOG level warning
DROP all -- anywhere 1.1.1.0/24
LOG all -- anywhere 192.168.1.0/24 LOG level warning
DROP all -- anywhere 192.168.1.0/24
LOG all -- anywhere anywhere LOG level warning
REJECT all -- anywhere anywhere reject-with
icmp-port-unreachable
Chain PREROUTING (policy ACCEPT)
target prot opt source destination
DNAT udp -- anywhere anywhere udp
spts:1024:65353 dpt:7777 to:192.168.1.14:7777
DNAT tcp -- anywhere anywhere tcp
spts:1024:65535 dpt:webcache to:192.168.1.14:8080
REDIRECT tcp -- fuchur.meding-zuehl.net anywhere tcp dpt:www
redir ports 3128
REDIRECT tcp -- helios.meding-zuehl.net anywhere tcp dpt:www
redir ports 3128
REDIRECT tcp -- helena.meding-zuehl.net anywhere tcp dpt:www
redir ports 3128
REDIRECT tcp -- hera.meding-zuehl.net anywhere tcp dpt:www
redir ports 3128
REDIRECT tcp -- devil.meding-zuehl.net anywhere tcp dpt:www
redir ports 3128
REDIRECT tcp -- 192.168.1.117 anywhere tcp dpt:www redir
ports 3128
Chain POSTROUTING (policy ACCEPT)
target prot opt source destination
MASQUERADE all -- 1.1.1.0/24 anywhere
MASQUERADE all -- 192.168.1.0/24 anywhere
The wierd thing is that even with policies changed to ACCEPT for all chains
and only activating masquerading in POSTROUTING the game does not work.
Btw:
Which game server do you use (ip address)? Maybe it is a problem of the
server?
Regards,
Hauke
--
> Sitze ich vor einer Winkiste bekomm ich hier die Kriese.
Ja, Windows ist wie Sackhuepfen ohne Beine.
----
diskless und valencia im Heise-Forum
>> Stay informed about: Trials of Atlantis does not work via NAT router