PaulDotCom mailing list archives

how to setup an SNAT rule in Firewall Builder


From: Robin Wood <robin () digininja org>
Date: Mon, 15 Oct 2012 09:14:11 +0100

Short version of the question, how do I set up this rule using Firewall Builder?

iptables -t nat -A POSTROUTING -o eth1 -j SNAT --to 123.12.23.43

Longer version.

I've got OpenVPN setup on my server and connecting to it from my
phone. If I clear all the existing firewall rules on the server and
add the rule above routing works fine and I can browser through the
VPN but if I leave the existing rules in place and add the new one
manually it doesn't work. As the rest of the rules are built using
Firewall Builder I need to know how to add that rule so it fits in
with the rest and comes up by default.

I've tried adding a new entry in the NAT section with a Original Src
as my VPN network (as set up in the Networks section under Objects)
and the Translated Src as either eth1 or the IP associated with eth1
but that didn't work. I also tried setting things up in Routing but
that didn't work either.

Robin
_______________________________________________
Pauldotcom mailing list
Pauldotcom () mail pauldotcom com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com


Current thread: