Pablo Alonso wrote:
>iptables -A FORWARD -i eth0 -o eth1 -d 22.214.171.124/24 -j ACCEPT
>other example ..but changing the interfaces ...
>iptables -A FORWARD -i eth1 -o eth0 -s 126.96.36.199/24 -j ACCEPT
>#eth1 interface local
>#eth0 interface external
are there any corresponding PREROUTE, POSTROUTE and DNAT commands?
>the idea es retrasmit packets between 2 or more networks interfaces,,
>... given internet access to the people what i want .
>BUt NOT NAT !.,
so, in your example you are using routable addresses on both interfaces?
then I was indeed wrong with NAT. I still don't fully understand where
you are going with this. Can you post your configuration for your WAN
and LAN interface in m0n0wall, as well as the relevant parts of ifconfig
under Linux? do you have any other interfaces (OPTn)? What you might be
doing there (just a wild guess) is allowing traffic through a static
route - in which case the routing table would also help. Obfuscate a
little for privacy, of course.