• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Iptables converting problem

Scheduled Pinned Locked Moved Routing and Multi WAN
5 Posts 2 Posters 2.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • C
    cman81
    last edited by Aug 11, 2008, 4:50 AM

    hi everybody,

    i'm new here and got problem with this iptables issue..

    i'm setup a new server for filtering my network traffic. i'm using pfsense as my firewall and using CentOS for my proxy+dansguardian. in order to make it transparent, i have to put this rule to make it works in firewall.

    the proble is how can i converting this iptables rules to ipfw rules

    #iptables -t mangle -A PREROUTING -j ACCEPT -p tcp –dport 80 -s 192.168.1.2
    #iptables -t mangle -A PREROUTING -j MARK --set-mark 3 -p tcp --dport 80

    my pfsense firewall did not accept iptables syntax rule ..
    anyone please help..
    thanks you..

    1 Reply Last reply Reply Quote 0
    • G
      GruensFroeschli
      last edited by Aug 11, 2008, 7:52 AM

      Umm… pfSense uses pf and not ipfw to filter traffic.
      Afaik ipfw is only used for scheduled rules and the CP.

      Also it's not such a good idea to add rules vi the console.
      The next time you reboote/reload the rules they will be gone.

      Just add your rules via the GUI and they will stay.

      We do what we must, because we can.

      Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

      1 Reply Last reply Reply Quote 0
      • C
        cman81
        last edited by Aug 13, 2008, 12:18 AM

        Thanks for the reply…
        all the suggestion and comment will be usefull for me.


        If i'm using GUI, where should i put the rule...
        Is it in the    'Firewall -> Rules -> LAN',    Sorry for the silly question.
        In my network, I have multiple VLAN and all computers in every VLAN connect to the internet through gateway server.

        FYI : Internet --> Router --> Firewall --> Core switch --> Switch --> User.

        Any suggestion... Thanks.

        1 Reply Last reply Reply Quote 0
        • G
          GruensFroeschli
          last edited by Aug 13, 2008, 6:24 AM

          How are your VLAN's set up?
          Do you have a trunk interface to the pfSense machine?

          Go to Interfaces –> assign and you can create VLANs on the interfaces.
          Each VLAN will appear as a "virtual" interface.

          Just dont mix untagged and tagged traffic on a single interface.

          You create the rules under firewall --> rules.
          If you work with VLANs you will have multiple (virtual) interfaces.
          About the rules: http://forum.pfsense.org/index.php/topic,7001.0.html

          We do what we must, because we can.

          Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

          1 Reply Last reply Reply Quote 0
          • C
            cman81
            last edited by Aug 26, 2008, 7:53 AM

            sorry for long time not come to this forum…

            my firewall inteface was set as :-
            1. WAN
            2. LAN (User in my network use this interface)
            3. DMZ
            4. SLAN (LAN for server)

            so.. what you think..

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
              This community forum collects and processes your personal information.
              consent.not_received