You should describe the network setup in a graphically.
I also see several issues unless your setup is fundamentally different:
- if this is an iptables firewall for a host reachable directly via
public IP, the host will be completely exposed (by excepting all
protocol 4 packages).
- the route 44.0.0.0/8 via tunl0 should always point to the UCSD
router, e.g. "ip route add 44/8 dev tunl0 via 169.228.66.251 onlink
table 44
I have published a HowTo
http://marc.storck.lu/blog/2013/08/howto-setup-an-amprnet-gateway-on-linux/
which describes how to setup the IPIP tunnel server. Configuration
element for NATted IPIP tunnel servers is yet missing, but I'm working
on it.
73 de Marc
Quoting sp2lob(a)tlen.pl:
(Please trim inclusions from previous messages)
_______________________________________________
Demetre,
Might be helpfull:
http://n1uro.ampr.org/cgi-bin/safe-config.cgi
B.rgds.
Tom - sp2lob
_________________________________________
44Net mailing list
44Net(a)hamradio.ucsd.edu
http://hamradio.ucsd.edu/mailman/listinfo/44net
http://www.ampr.org/donate.html