[KLUG Members] multicast

Andrej Martchouk martchouk at yahoo.de
Sun Aug 22 16:06:06 EDT 2004


*** Peter Buxton wrote on Wed, 3 Sep 2003 16:24:02
-0400

> However, I think you need to add iptables commands
if
> your four segments
> are being joined by iptables, as well.

> iptables -A FORWARD -m pkttype --pkt-type multicast
-j ACCEPT

Hi All,

You had here a very interesting discussion about
multicast routing on Linux.

Now I research for the similar problem "multicast
across linux firewall".
pimd is installed on the firewall machine, multicast
routing und forwarding works fine. But I have problems
with defining firewall policy supporting multicast
traffic.
Maybe somebody has experiences to answer these
questions:
1. Is it possible to define a (pseudo)stateful
iptables rule for incoming UDP-stream for all
multicast groups? (it is not really handy to allow
inbound UDP separatly for each group, and not really
secure to allow all D Class UDP)
2.  Can anybody specify the rules to handle IGMP and
PIM packets?

thanks in advance
andrei


		
__________________________________
Do you Yahoo!?
Y! Messenger - Communicate in real time. Download now. 
http://messenger.yahoo.com


More information about the Members mailing list