Project

General

Profile

Tâche #3575

Les règles FORWARD générées par era ne sont pas forcément loguées

Added by Benjamin Bohard almost 9 years ago. Updated over 6 years ago.

Status:
Fermé
Priority:
Normal
Assigned To:
Start date:
06/05/2012
Due date:
07/18/2014
% Done:

100%

Spent time:
Remaining (hours):
0.0

Description

L'input est bien logué, pas le forward. Il faut ajout une cible LOG pour le forward.

/sbin/iptables -t nat -A PREROUTING -p tcp --dport 25 --tcp-flags SYN,RST,ACK SYN -i %%interface_gw -s 0/0 -d %%adresse_ip_eth0 -j DNAT --to-destination %%container_ip_reseau:25
/sbin/iptables -t filter -A FORWARD -i %%interface_gw -o br0 -s 0/0 -d %%container_ip_reseau/255.255.255.255 -p tcp --dport 25 -j ACCEPT
/sbin/iptables -t filter -A ext-bas -p tcp --dport 25 --tcp-flags SYN,RST,ACK SYN -i %%interface_gw  -s 0/0 -d %%container_ip_reseau -j LOG --log-prefix "iptables: era ext-bas" 

Associated revisions

Revision 8bc71a12 (diff)
Added by Gwenael Remond almost 7 years ago

ajout d'une regle de log pour la directive de type Forward

Fixes #3575, @1h

History

#1 Updated by Joël Cuissinat about 8 years ago

  • Assigned To set to Gwenael Remond
  • Target version set to Mises à jour 2.3.8

#2 Updated by Joël Cuissinat about 8 years ago

  • Target version changed from Mises à jour 2.3.8 to Mises à jour 2.3.9

#3 Updated by Redmine Admin about 8 years ago

  • Target version changed from Mises à jour 2.3.9 to Mises à jour 2.3.10

#4 Updated by Joël Cuissinat almost 8 years ago

  • Status changed from Nouveau to En attente d'informations
  • Target version deleted (Mises à jour 2.3.10)

En attente de décision et éventuellement du patch qui va bien :)

#5 Updated by Gwenael Remond almost 7 years ago

  • Status changed from En attente d'informations to Résolu
  • % Done changed from 0 to 100

#6 Updated by Gwenael Remond almost 7 years ago

  • Due date set to 07/18/2014
  • Target version set to sprint 2014 36-37

#7 Updated by Luc Bourdot over 6 years ago

  • Tracker changed from Anomalie to Tâche

#8 Updated by Fabrice Barconnière over 6 years ago

  • Status changed from Résolu to Fermé
  • Remaining (hours) set to 0.0

Also available in: Atom PDF