[KLUG Members] multicast

John Pesce pescej at sprl.db.erau.edu
Mon Aug 23 09:54:09 EDT 2004


Interesting. It was a nice discussion, however, I was never able to
figure out a rule that would SNAT the outgoing multicast to appear to
come from the router :(




On Sun, 2004-08-22 at 16:06, Andrej Martchouk wrote:
> *** Peter Buxton wrote on Wed, 3 Sep 2003 16:24:02
> -0400
> 
> > However, I think you need to add iptables commands
> if
> > your four segments
> > are being joined by iptables, as well.
> 
> > iptables -A FORWARD -m pkttype --pkt-type multicast
> -j ACCEPT
> 
> Hi All,
> 
> You had here a very interesting discussion about
> multicast routing on Linux.
> 
> Now I research for the similar problem "multicast
> across linux firewall".
> pimd is installed on the firewall machine, multicast
> routing und forwarding works fine. But I have problems
> with defining firewall policy supporting multicast
> traffic.
> Maybe somebody has experiences to answer these
> questions:
> 1. Is it possible to define a (pseudo)stateful
> iptables rule for incoming UDP-stream for all
> multicast groups? (it is not really handy to allow
> inbound UDP separatly for each group, and not really
> secure to allow all D Class UDP)
> 2.  Can anybody specify the rules to handle IGMP and
> PIM packets?
> 
> thanks in advance
> andrei
> 
> 
> 		
> __________________________________
> Do you Yahoo!?
> Y! Messenger - Communicate in real time. Download now. 
> http://messenger.yahoo.com
> _______________________________________________
> Members mailing list
> Members at kalamazoolinux.org
> 


More information about the Members mailing list