WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

Re: [Xen-users] 3.0.2 NAT headaches

To: "John Wells" <groups@xxxxxxxxxxxxxxxxxxxxx>
Subject: Re: [Xen-users] 3.0.2 NAT headaches
From: "John Wells" <groups@xxxxxxxxxxxxxxxxxxxxx>
Date: Tue, 8 Aug 2006 14:54:52 -0400 (EDT)
Cc: xen-users@xxxxxxxxxxxxxxxxxxx
Delivery-date: Tue, 08 Aug 2006 11:37:29 -0700
Envelope-to: www-data@xxxxxxxxxxxxxxxxxx
Importance: Normal
In-reply-to: <55395.66.192.236.118.1155055656.squirrel@xxxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
References: <55395.66.192.236.118.1155055656.squirrel@xxxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
User-agent: SquirrelMail/1.4.3a-11.EL3.TL1
John Wells said:
> I'm struggling to make NAT work on Debian Sarge. Bridging works fine,
but
> when I try to switch to NAT, I can't ping anything.

Guys,

I found at least part of my problem. I was only testing from one DomU to
the outside internet...creating another DomU revealed that I am able to
ping between DomUs...I just can't ping external addresses.

I assumed my use of apf (ipfilters wrapper) in Dom0 might be complicating
things, so I flushed the rules, restarted xend, but still no avail.

So, hoping someone might tell me what iptables rules I need to enter to
allow traffic from my domUs (10.0.0.1, 10.0.0.2, etc) to access the public
internet. I've done it before for home routing, but Xen has me a little
turned around.

Thank you for the help!
John




_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users