Kernel2.4 and ipchains upgrade

vichon@one.net vichon@one.net
Thu, 6 Jul 2000 17:13:44 -0400


Greetings.  I have installed kernel 2.4-test2 and configured it to the
best of my knowledge for iptables.

I am trying to upgrade an existing ipchains firewall so I can use NAT.
I thought the ipchains commands were backwards compatible however when I
do ipchains -L, I am told it's not compatible with this kernel.
(iptables however works is is happily accepting everything !!!!!
aaacccckkkk!)  Furthermore, the ipchains mount portion of kernel config
is greyed out (in xconfig).

1.  Can I use ipchains and iptables in this kernel using iptables only
for where I want NAT?

2.  If I can't, I assume this means I will have to rewrite everything?
Is there an easier way to do it?

3.  The final goal is to have a DMZ with multiple web, ftp and other
servers - the internet folks would see www.xyz.com and www.xyzz.com with
real IP's which would come in and NAT to internal IP's on the DMZ.  I
assume I'm on the right track?

Are there any HOWTO's regarding how to configure the kernel other than
the help for each module in the config?

Thanks!

I'm sort of under the gun so any quick replies would be greatly
appreciated!!!!

Michael Matzko