You should describe the network setup in a graphically.
I also see several issues unless your setup is fundamentally different:
- if this is an iptables firewall for a host reachable directly via public IP, the host will be completely exposed (by excepting all protocol 4 packages). - the route 44.0.0.0/8 via tunl0 should always point to the UCSD router, e.g. "ip route add 44/8 dev tunl0 via 169.228.66.251 onlink table 44
I have published a HowTo http://marc.storck.lu/blog/2013/08/howto-setup-an-amprnet-gateway-on-linux/ which describes how to setup the IPIP tunnel server. Configuration element for NATted IPIP tunnel servers is yet missing, but I'm working on it.
73 de Marc
Quoting sp2lob@tlen.pl:
(Please trim inclusions from previous messages) _______________________________________________ Demetre,
Might be helpfull:
http://n1uro.ampr.org/cgi-bin/safe-config.cgi
B.rgds. Tom - sp2lob
44Net mailing list 44Net@hamradio.ucsd.edu http://hamradio.ucsd.edu/mailman/listinfo/44net http://www.ampr.org/donate.html