Re: YDL 2.1 ipchains not working


Subject: Re: YDL 2.1 ipchains not working
From: nathan r. hruby (nhruby@arches.uga.edu)
Date: Sun Nov 04 2001 - 21:12:28 MST


On Sun, 4 Nov 2001, Cdowns wrote:

> all 2.4 series kernels are running iptables not ipchains. you will have to
> compile ipchains into the kernel before you can use it.
>

Err.. I'm not a 2.4 junkie (the Vm problems have made me shy away from
using the 2.4x series.. ) but I think there's a module that allows ipmasq
and ipchains rules to be interperted by the iptables userspace tools and
netfilter kernel modules, granted you don't get the benifit of netfileter
/ iptables, but hey, you don't have to rewrite your firewall rules..

Look in the IPTABLES Howto: http://netfilter.samba.org/

Please post back what you find.. I'd be interested and have to implement a
2.4 based box in the next month.

-n

> -D
>
> Ronald Hale-Evans wrote:
>
> > I just upgraded from YDL 2.0 to 2.1 with some excellent help from this
> > list, and everything looks super, with one main exception: I can't (or
> > rather WON'T) get on the Internet because on boot, I get hundreds of
> > messages, all reading
> >
> > ipchains: Protocol not available.
> >
> > In short, ipchains seems not be working at all, so I don't have a
> > firewall. I'm running the 2.4 kernel that came with the YDL 2.1
> > upgrade, and the associated ipchains package. The rules in my
> > ipchains setup script, run at boot time, look something like this:
> >
> > ipchains -A output -p tcp -s $MONEYPENNY www -d $ANY $UNPRIV -j ACCEPT
> >
> > where:
> >
> > $MONEYPENNY = my computer's ip address
> > $ANY = 0/0
> > $UNPRIV = 1024:65535
> >
> > This is all pretty standard. Has the format for ipchains commands
> > changed with the new kernel? I checked the new man page, and it
> > doesn't seem to have. So what's the problem?
> >
> > Thanks,
> >
> > Ron H-E
> >
> > --
> > Ron Hale-Evans ... rwhe@ludism.org & rwhe@apocalypse.org
> > Center for Ludic Synergy, Seattle Cosmic Game Night,
> > Kennexions Glass Bead Game & Positive Revolution FAQ: http://www.ludism.org/
> > Home page & Hexagram-8 I Ching Mailing List: http://www.apocalypse.org/~rwhe/
> > == You meet the most interesting people when you're a solipsist. ==
>

-- 
......
nathan hruby - nhruby@arches.uga.edu
computer support specialist
department of drama and theatre
http://www.drama.uga.edu/
......



This archive was generated by hypermail 2a24 : Sun Nov 04 2001 - 21:35:49 MST