View previous topic :: View next topic |
Author |
Message |
flysoul n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 18 Feb 2004 Posts: 10
|
Posted: Fri Apr 23, 2004 5:28 pm Post subject: Problems with iptables after installing 2.6 kernel |
|
|
After i've upgraded from the 2.4.26-vanilla to the 2.6.5-mm6 kernel, my transparent web and pop3 proxies are not working anymore. The iptables lines for the redirection is:
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 3128
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 110 -j REDIRECT --to-port 8110
What can I do?
.config
Code: |
#
# IP: Netfilter Configuration
#
CONFIG_IP_NF_CONNTRACK=y
CONFIG_IP_NF_FTP=m
CONFIG_IP_NF_IRC=m
# CONFIG_IP_NF_TFTP is not set
# CONFIG_IP_NF_AMANDA is not set
# CONFIG_IP_NF_QUEUE is not set
CONFIG_IP_NF_IPTABLES=y
CONFIG_IP_NF_MATCH_LIMIT=y
CONFIG_IP_NF_MATCH_IPRANGE=y
CONFIG_IP_NF_MATCH_MAC=y
CONFIG_IP_NF_MATCH_PKTTYPE=y
CONFIG_IP_NF_MATCH_MARK=y
CONFIG_IP_NF_MATCH_MULTIPORT=y
CONFIG_IP_NF_MATCH_TOS=y
CONFIG_IP_NF_MATCH_RECENT=y
CONFIG_IP_NF_MATCH_ECN=y
CONFIG_IP_NF_MATCH_DSCP=y
CONFIG_IP_NF_MATCH_AH_ESP=y
CONFIG_IP_NF_MATCH_LENGTH=y
CONFIG_IP_NF_MATCH_TTL=y
CONFIG_IP_NF_MATCH_TCPMSS=y
CONFIG_IP_NF_MATCH_HELPER=y
CONFIG_IP_NF_MATCH_STATE=y
CONFIG_IP_NF_MATCH_CONNTRACK=y
CONFIG_IP_NF_MATCH_OWNER=y
CONFIG_IP_NF_FILTER=y
CONFIG_IP_NF_TARGET_REJECT=y
CONFIG_IP_NF_NAT=y
CONFIG_IP_NF_NAT_NEEDED=y
CONFIG_IP_NF_TARGET_MASQUERADE=y
CONFIG_IP_NF_TARGET_REDIRECT=y
CONFIG_IP_NF_TARGET_NETMAP=y
CONFIG_IP_NF_TARGET_SAME=y
# CONFIG_IP_NF_NAT_LOCAL is not set
# CONFIG_IP_NF_NAT_SNMP_BASIC is not set
CONFIG_IP_NF_NAT_IRC=m
CONFIG_IP_NF_NAT_FTP=m
# CONFIG_IP_NF_MANGLE is not set
CONFIG_IP_NF_TARGET_LOG=y
# CONFIG_IP_NF_TARGET_ULOG is not set
# CONFIG_IP_NF_TARGET_TCPMSS is not set
# CONFIG_IP_NF_ARPTABLES is not set
|
|
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
Earthwings Bodhisattva
![Bodhisattva Bodhisattva](/images/ranks/rank-bodhisattva.gif)
![](images/avatars/49753421747790001d409d.png)
Joined: 14 Apr 2003 Posts: 7753 Location: Germany
|
Posted: Fri Apr 23, 2004 8:30 pm Post subject: |
|
|
Did you re-emerge iptables with /usr/src/linux pointing to the 2.6 sources? |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
flysoul n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 18 Feb 2004 Posts: 10
|
Posted: Fri Apr 23, 2004 8:46 pm Post subject: |
|
|
no. is it necessary? |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
flysoul n00b
![n00b n00b](/images/ranks/rank_rect_0.gif)
Joined: 18 Feb 2004 Posts: 10
|
Posted: Fri Apr 23, 2004 9:38 pm Post subject: |
|
|
it worked now after re-emerging...
th hd was also almost full, it could be also the problem.... |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
Earthwings Bodhisattva
![Bodhisattva Bodhisattva](/images/ranks/rank-bodhisattva.gif)
![](images/avatars/49753421747790001d409d.png)
Joined: 14 Apr 2003 Posts: 7753 Location: Germany
|
Posted: Sat Apr 24, 2004 12:37 am Post subject: |
|
|
flysoul wrote: | no. is it necessary? |
Yes. iptables is one of the packages that has to be remerged after a kernel change. /usr/src/linux has to match the running kernel, otherwise it's very likely to get weird error messages from iptables. |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
|