iptables question

Thomas Stivers stivers_t at tomass.dyndns.org
Sun Jul 4 10:02:42 EDT 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

on Sat, Jul 03, 2004 at 08:18:36PM -0500, Gregory Nowak wrote:
> It's amazing how after a while of working on something and not getting
> anywhere, you start to miss things said in the man page (smile). I'm
> still surprised that didn't give me any errors, or maybe it did, and I
> didn't notice them, or I simply forgot to rerun the firewall script
> after re-editing it the last time.
> 
> Anyway, I now have:
> 
> iptables -t nat -A OUTPUT -o eth0 -p tcp --dport 25 -j DNAT
> --to-destination aaa.bbb.ccc.ddd

This looks fine and doesn't have the dash someone else mentioned. 

> and when I run my script, I get at that line:
> 
> iptables: Invalid argument
> 
> which as you can see, is an extremely useful error message, whoever
> wrote it, absolutely out did themselves in the creativity
> department (grrrrrr).

Yeah don't you just love "informative" error messages like that.

> BTW, I am substituting aaa.bbb.ccc.ddd with a correct IP address in
> the actual script, so that can't be the problem.

You might ask on the netfilter list which I don't have the address to
right off hand my very limited understand of iptables has reached its
end.

- -- 
"Debugging is twice as hard as writing the code in the first place.
Therefore, if you write the code as cleverly as possible, you are,
by definition, not smart enough to debug it." - Brian W. Kernighan

Thomas Stivers	e-mail: stivers_t at tomass.dyndns.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFA6A4C5JK61UXLur0RAhx4AJ99pWdT3W1B0pzvWdhZqw0KjzSwFACcCeV1
Q3nAVqDp9Vc6W/sUyCeu8Pk=
=z+PC
-----END PGP SIGNATURE-----




More information about the Speakup mailing list