ciao a tutti non riesco a far andare il masquerading col firewall di openwrt<br><br><div class="ace-line" id="magicdomid141"><span class="">questo e' il mio /etc/config/network<br></span></div><div class="ace-line" id="magicdomid142">
<br></div><div class="ace-line" id="magicdomid143"><span class="">config 'interface' 'loopback'</span></div><div class="ace-line" id="magicdomid144"><span class="">        option 'ifname' 'lo'</span></div>
<div class="ace-line" id="magicdomid145"><span class="">        option 'proto' 'static'</span></div><div class="ace-line" id="magicdomid146"><span class="">        option 'ipaddr' '127.0.0.1'</span></div>
<div class="ace-line" id="magicdomid147"><span class="">        option 'netmask' '255.0.0.0'</span></div><div class="ace-line" id="magicdomid148"><br></div><div class="ace-line" id="magicdomid149"><span class="">config 'switch' 'eth0'</span></div>
<div class="ace-line" id="magicdomid150"><span class="">        option 'enable_vlan' '1'</span></div><div class="ace-line" id="magicdomid151"><br></div><div class="ace-line" id="magicdomid152"><span class="">config 'switch_vlan'</span></div>
<div class="ace-line" id="magicdomid153"><span class="">        option 'device' 'eth0'</span></div><div class="ace-line" id="magicdomid154"><span class="">        option 'vlan' '1'</span></div>
<div class="ace-line" id="magicdomid155"><span class="">        option 'ports' '0 1 2 3 4'</span></div><div class="ace-line" id="magicdomid156"><br></div><div class="ace-line" id="magicdomid157"><span class="">config 'interface' 'msh0'</span></div>
<div class="ace-line" id="magicdomid158"><span class="">        option 'proto' 'static'</span></div><div class="ace-line" id="magicdomid159"><span class="">        option 'ip6addr' '2001:470:1f13:0325::74ea:3abb:3dde/64'</span></div>
<div class="ace-line" id="magicdomid160"><span class="">        option 'ipaddr' '5.187.61.222'</span></div><div class="ace-line" id="magicdomid161"><span class="">        option 'netmask' '255.0.0.0'</span></div>
<div class="ace-line" id="magicdomid162"><br></div><div class="ace-line" id="magicdomid163"><span class="">config 'interface' 'wan'</span></div><div class="ace-line" id="magicdomid164"><span class="">        option 'ifname' 'eth1'</span></div>
<div class="ace-line" id="magicdomid165"><span class="">        option 'proto' 'dhcp'</span></div><div class="ace-line" id="magicdomid166"><br></div><div class="ace-line" id="magicdomid167"><span class="">config 'interface' 'lan'</span></div>
<div class="ace-line" id="magicdomid168"><span class="">        option 'type' 'bridge'</span></div><div class="ace-line" id="magicdomid169"><span class="">        option 'ifname' 'eth0'</span></div>
<div class="ace-line" id="magicdomid170"><span class="">        option 'proto' 'static'</span></div><div class="ace-line" id="magicdomid171"><span class="">        option 'ipaddr' '10.61.222.1'</span></div>
<div class="ace-line" id="magicdomid172"><span class="">        option 'netmask' '255.255.255.0'</span></div><div class="ace-line" id="magicdomid173"><br></div><div class="ace-line" id="magicdomid174"><span class="">config 'interface' 'niit4to6'</span></div>
<div class="ace-line" id="magicdomid175"><span class="">        option 'proto' 'none'</span></div><div class="ace-line" id="magicdomid176"><span class="">        option 'ifname' 'niit4to6'</span></div>
<div class="ace-line" id="magicdomid177"><span class=""> </span></div><div class="ace-line" id="magicdomid178"><span class="">config 'interface' 'niit6to4'</span></div><div class="ace-line" id="magicdomid179">
<span class="">        option 'proto' 'none'</span></div><div class="ace-line" id="magicdomid180"><span class="">        option 'ifname' 'niit6to4'</span></div><div class="ace-line" id="magicdomid181">
<br></div><div class="ace-line" id="magicdomid182"><span class="">e questo </span><span class="">e' il mio /etc/config/</span><span class="">firewall</span></div><div class="ace-line" id="magicdomid183"><br></div><div class="ace-line" id="magicdomid184">
<span class="">config 'defaults'</span></div><div class="ace-line" id="magicdomid185"><span class="">        option 'syn_flood' '1'</span></div><div class="ace-line" id="magicdomid186"><span class="">        option 'input' 'ACCEPT'</span></div>
<div class="ace-line" id="magicdomid187"><span class="">        option 'output' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid384"><span class="">        option 'forward' 'ACCEPT'</span></div>
<div class="ace-line" id="magicdomid398"><span class="author-g-mwwuvkhyr42p4maf">        option 'disable_ipv6' '1'</span></div><div class="ace-line" id="magicdomid426"><br></div><div class="ace-line" id="magicdomid436">
<span class="author-g-mwwuvkhyr42p4maf">## zone</span></div><div class="ace-line" id="magicdomid189"><br></div><div class="ace-line" id="magicdomid190"><span class="">config 'zone'</span></div><div class="ace-line" id="magicdomid191">
<span class="">        option 'name' 'lan'</span></div><div class="ace-line" id="magicdomid192"><span class="">        option 'input' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid193">
<span class="">        option 'output' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid194"><span class="">        option 'forward' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid195">
<br></div><div class="ace-line" id="magicdomid196"><span class="">config 'zone'</span></div><div class="ace-line" id="magicdomid197"><span class="">        option 'name' 'msh0'</span></div><div class="ace-line" id="magicdomid198">
<span class="">        option 'input' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid199"><span class="">        option 'output' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid200">
<span class="">        option 'forward' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid201"><br></div><div class="ace-line" id="magicdomid202"><span class="">config 'zone'</span></div><div class="ace-line" id="magicdomid203">
<span class="">        option 'name' 'wan'</span></div><div class="ace-line" id="magicdomid204"><span class="">        option 'input' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid205">
<span class="">        option 'output' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid206"><span class="">        option 'forward' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid207">
<span class="">        option 'masq' '1'</span></div><div class="ace-line" id="magicdomid208"><span class="">        option 'mtu_fix' '1'</span></div><div class="ace-line" id="magicdomid242">
<br></div><div class="ace-line" id="magicdomid237"><span class="author-g-mwwuvkhyr42p4maf">config 'zone'</span></div><div class="ace-line" id="magicdomid243"><span class="author-g-mwwuvkhyr42p4maf">        option 'name' 'niit4to6'</span></div>
<div class="ace-line" id="magicdomid239"><span class="author-g-mwwuvkhyr42p4maf">        option 'input' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid240"><span class="author-g-mwwuvkhyr42p4maf">        option 'output' 'ACCEPT'</span></div>
<div class="ace-line" id="magicdomid241"><span class="author-g-mwwuvkhyr42p4maf">        option 'forward' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid244"><br></div><div class="ace-line" id="magicdomid245">
<br></div><div class="ace-line" id="magicdomid246"><span class="author-g-mwwuvkhyr42p4maf">config 'zone'</span></div><div class="ace-line" id="magicdomid256"><span class="author-g-mwwuvkhyr42p4maf">        option 'name' 'niit6to4'</span></div>
<div class="ace-line" id="magicdomid248"><span class="author-g-mwwuvkhyr42p4maf">        option 'input' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid249"><span class="author-g-mwwuvkhyr42p4maf">        option 'output' 'ACCEPT'</span></div>
<div class="ace-line" id="magicdomid251"><span class="author-g-mwwuvkhyr42p4maf">        option 'forward' 'ACCEPT'</span></div><div class="ace-line" id="magicdomid351"><br></div><div class="ace-line" id="magicdomid363">
<span class="author-g-mwwuvkhyr42p4maf">## msh0 -></span></div><div class="ace-line" id="magicdomid365"><br></div><div class="ace-line" id="magicdomid366"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div>
<div class="ace-line" id="magicdomid381"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'msh0'</span></div><div class="ace-line" id="magicdomid368"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'wan'</span></div>
<div class="ace-line" id="magicdomid369"><br></div><div class="ace-line" id="magicdomid370"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid382"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'msh0'</span></div>
<div class="ace-line" id="magicdomid380"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'lan'</span></div><div class="ace-line" id="magicdomid373"><br></div><div class="ace-line" id="magicdomid374">
<span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid383"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'msh0'</span></div><div class="ace-line" id="magicdomid376">
<span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'niit4to6'</span></div><div class="ace-line" id="magicdomid299"><br></div><div class="ace-line" id="magicdomid309"><span class="author-g-mwwuvkhyr42p4maf">## lan -></span></div>
<div class="ace-line" id="magicdomid254"><br></div><div class="ace-line" id="magicdomid211"><span class="">config 'forwarding'</span></div><div class="ace-line" id="magicdomid212"><span class="">        option 'src' 'lan'</span></div>
<div class="ace-line" id="magicdomid213"><span class="">        option 'dst' 'wan'</span></div><div class="ace-line" id="magicdomid214"><br></div><div class="ace-line" id="magicdomid215"><span class="">config 'forwarding'</span></div>
<div class="ace-line" id="magicdomid216"><span class="">        option 'src' 'lan'</span></div><div class="ace-line" id="magicdomid217"><span class="">        option 'dst' 'msh0'</span></div>
<div class="ace-line" id="magicdomid257"><br></div><div class="ace-line" id="magicdomid258"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid297"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'lan'</span></div>
<div class="ace-line" id="magicdomid298"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'niit4to6'</span></div><div class="ace-line" id="magicdomid310"><br></div><div class="ace-line" id="magicdomid320">
<span class="author-g-mwwuvkhyr42p4maf">## wan -></span></div><div class="ace-line" id="magicdomid262"><br></div><div class="ace-line" id="magicdomid264"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div>
<div class="ace-line" id="magicdomid267"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'wan'</span></div><div class="ace-line" id="magicdomid269"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'lan'</span></div>
<div class="ace-line" id="magicdomid276"><br></div><div class="ace-line" id="magicdomid277"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid278"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'wan'</span></div>
<div class="ace-line" id="magicdomid291"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'msh0'</span></div><div class="ace-line" id="magicdomid287"><br></div><div class="ace-line" id="magicdomid288">
<span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid289"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'wan'</span></div><div class="ace-line" id="magicdomid294">
<span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'niit4to6'</span></div><div class="ace-line" id="magicdomid321"><br></div><div class="ace-line" id="magicdomid336"><span class="author-g-mwwuvkhyr42p4maf">## niit6to4 -></span></div>
<div class="ace-line" id="magicdomid337"><br></div><div class="ace-line" id="magicdomid340"><span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid399"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'niit6to4'</span></div>
<div class="ace-line" id="magicdomid342"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'lan'</span></div><div class="ace-line" id="magicdomid343"><br></div><div class="ace-line" id="magicdomid344">
<span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid400"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'niit6to4'</span></div>
<div class="ace-line" id="magicdomid346"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'msh0'</span></div><div class="ace-line" id="magicdomid347"><br></div><div class="ace-line" id="magicdomid348">
<span class="author-g-mwwuvkhyr42p4maf">config 'forwarding'</span></div><div class="ace-line" id="magicdomid401"><span class="author-g-mwwuvkhyr42p4maf">        option 'src' 'niit6to4'</span></div>
<div class="ace-line" id="magicdomid404"><span class="author-g-mwwuvkhyr42p4maf">        option 'dst' 'wan'</span></div><div class="ace-line" id="magicdomid405"><br><br><br>come potete vedere masq e' settato a 1 su wan ma sniffando i pacchetti escono con l'ip sorgente non modificato :|<br>
</div>