[linux] Routovanie

Marek Soha konfery na snet.sk
Pondělí Únor 21 17:09:57 CET 2005


Takze som ten squid nevyuzil...Najnovie mam takyto problem:
Chcem aby pakety pre jeden port odchadzali inym smerom ako ostatny
traffic. Nikde problem nevidim,ale olala...Nechodi to...
Situacia:

R1----verejna ipcka eth2
| ----eth0 - 10.10.10.0 rozsah
|eth1 - 10.10.1.1
|
|wlan0 - 10.10.1.103
R2----eth0 - 10.10.2.0 rozsah
  ----eth1 - 10.10.251.80 ----> gw 10.10.251.1 --> inet

Router R2:

ip ro

x.x.x.x/27 dev wlan0  scope link
10.10.2.0/24 dev eth0  scope link
10.10.1.0/24 via 10.10.1.1 dev wlan0
10.10.1.0/24 dev wlan0  scope link
10.10.251.0/24 dev eth1  proto kernel  scope link  src 10.10.251.80
10.10.10.0/24 via 10.10.1.1 dev wlan0
10.10.10.0/24 dev eth1  scope link
127.0.0.0/8 dev lo  scope link
default via 10.10.251.1 dev eth1

ip ro sh table 4
x.x.x.x/27 dev wlan0  scope link
10.10.2.0/24 dev eth0  scope link
10.10.1.0/24 via 10.10.1.1 dev wlan0
10.10.251.0/24 dev eth1  proto kernel  scope link  src 10.10.251.80
10.10.10.0/24 via 10.10.1.1 dev wlan0
169.254.0.0/16 dev wlan0  scope link
127.0.0.0/8 dev lo  scope link
default via 10.10.1.1 dev wlan0

ip ru ls
0:      from all lookup local
32765:  from all fwmark 0x4 lookup 4
32766:  from all lookup main
32767:  from all lookup default

iptables -L -t mangle
Chain PREROUTING (policy ACCEPT)
target     prot opt source               destination
MARK       tcp  --  anywhere             anywhere            tcp dpt:ftp MARK set 0x4
MARK       tcp  --  anywhere             anywhere            tcp dpt:ftp-data MARK set 0x4
MARK       tcp  --  anywhere             anywhere            tcp dpt:6666 MARK set 0x4
MARK       tcp  --  anywhere             anywhere            tcp dpt:ircd MARK set 0x4
MARK       tcp  --  anywhere             anywhere            tcp dpt:ssh MARK set 0x4
MARK       udp  --  anywhere             anywhere            udp dpt:ssh MARK set 0x4
MARK       udp  --  anywhere             anywhere            udp dpt:ircd MARK set 0x4
MARK       udp  --  anywhere             anywhere            udp dpt:ftp MARK set 0x4
MARK       udp  --  anywhere             anywhere            udp dpt:ftp-data MARK set 0x4

V podstate vsetko markuje dobre,ale von to nejde...Maskovane je vsetko
ok...

Dakujem za kazdu radu,aj ked je dnes draha :)

---------------=[**]=----------------- 
             \\\\|//// 
             \\ _ _ // 
              ( o o ) 
+==========oOOo-(_)-oOOo==========+ 
             Marek Soha 
           konfery na snet.sk
    snet.sk network administrator
+---------------------------------+
    Dakujem ze mi neposielate spam
       ani inu nevyziadanu postu.
+==================Oooo===========+ 
             oooO  (  ) 
             (  )  ) / 
              \ ( (_/ 
               \_) 




Další informace o konferenci linux