hello,
i just ran into an old problem ...
have internal network (official class-C) on eth0.
one of my machines (with one of my ip's) ist standing outside, so it's routed on eth3.
it works fine - as long as I connect this machine from internal network.
when i try to connect from this machin into internal network it gives these "spoof_drop" errors again.
for now i found two possible workarounds.
a) create the file /etc/rc.d/ipnat.local and delete iptables-rules by line (find out the line-numbers first)
b) - give the interface a dummy-ip (like 192.168.5.1)
- give it an alias with the official gateway-ip, too
- define a route for the official class-c net on this nic
both seem to me like not so professional workarounds.
what is with ip-spoofing on my other offical ip's?
is this still under protection?
am i just blind, not to see an easier way?
or is there a point in the web-interface (maybe in the future?)
kind regards,
chris
This thread was automatically locked due to age.