[tor-talk] glibc's DNS lookups fail

Jérémy Bobbio lunar at debian.org
Wed Feb 15 05:55:12 UTC 2012


On Tue, Feb 14, 2012 at 05:34:55PM -0500, douglastskillern at lavabit.com wrote:
> Chain POSTROUTING (policy ACCEPT)
> target     prot opt source               destination
> MASQUERADE  tcp  --  192.168.179.0/24    !192.168.179.0/24    masq ports:
> 1024-65535
> MASQUERADE  udp  --  192.168.179.0/24    !192.168.179.0/24    masq ports:
> 1024-65535
> MASQUERADE  all  --  192.168.179.0/24    !192.168.179.0/24
> [...]
> (The POSTROUTING stuff is due to a VM I have running.)

I think your issues might be related to these rules, though. Could you
try without? Could you try to use SNAT with a specific IP address
instead of MASQUERADE? Could you try to filter based on output
interfaces instead of destination addresses?

-- 
Jérémy Bobbio                        .''`. 
lunar at debian.org                    : :Ⓐ  :  # apt-get install anarchism
                                    `. `'` 
                                      `-   
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: Digital signature
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20120215/ae1c673a/attachment.pgp>


More information about the tor-talk mailing list