<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress/1.5.2" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/">
<channel>
	<title>Comments on: OpenWRT Advanced Firewall</title>
	<link>http://garycourt.com/blog/post/openwrt-advanced-firewall/</link>
	<description></description>
	<pubDate>Tue, 06 Jan 2009 11:09:34 +0000</pubDate>
	<generator>http://wordpress.org/?v=1.5.2</generator>

	<item>
 		<title>Comment on OpenWRT Advanced Firewall by: dani</title>
		<link>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-53910</link>
		<pubDate>Wed, 03 Dec 2008 18:50:24 +0000</pubDate>
		<guid>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-53910</guid>
					<description>Hi, i just used your picture on my webpage where I wrote a small howto explaining how to isolate a port on linksys wrt54gs with dd-wrt: http://wiki.eslimasec.com/esliwiki/IsolatingLinksysPortsPost

thanks in advance and I hope I can help someone</description>
		<content:encoded><![CDATA[	<p>Hi, i just used your picture on my webpage where I wrote a small howto explaining how to isolate a port on linksys wrt54gs with dd-wrt: <a href='http://wiki.eslimasec.com/esliwiki/IsolatingLinksysPortsPost' rel='nofollow'>http://wiki.eslimasec.com/esliwiki/IsolatingLinksysPortsPost</a></p>
	<p>thanks in advance and I hope I can help someone
</p>
]]></content:encoded>
				</item>
	<item>
 		<title>Comment on OpenWRT Advanced Firewall by: ibague</title>
		<link>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-41747</link>
		<pubDate>Sun, 20 Apr 2008 23:39:35 +0000</pubDate>
		<guid>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-41747</guid>
					<description>Well, The best firewall i have found in my experience with linux is APF, very simple configuration and work great! Is there a distribution for openwrt???? i googled a lot some minutes ago without answer</description>
		<content:encoded><![CDATA[	<p>Well, The best firewall i have found in my experience with linux is APF, very simple configuration and work great! Is there a distribution for openwrt???? i googled a lot some minutes ago without answer
</p>
]]></content:encoded>
				</item>
	<item>
 		<title>Comment on OpenWRT Advanced Firewall by: Gary Court</title>
		<link>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-2132</link>
		<pubDate>Thu, 31 Aug 2006 00:39:26 +0000</pubDate>
		<guid>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-2132</guid>
					<description>Yea, looks like I forgot to comment on that. I commented out, in &lt;code&gt;S50dnsmasq&lt;/code&gt;, the line...

  args=&quot;-l /tmp/dhcp.leases -K -F $(int2ip $start),$(int2ip $end),$(int2ip $netmask),12h ${wanif:+-I ${wanif} }&quot;

...which essentially removes the overriding configuration options that you then define in &lt;code&gt;dnsmasq.conf&lt;/code&gt;. 

You do need to have &lt;code&gt;S50dnsmasq&lt;/code&gt; in there in order to start the &lt;code&gt;dnsmasq&lt;/code&gt; service.</description>
		<content:encoded><![CDATA[	<p>Yea, looks like I forgot to comment on that. I commented out, in <code>S50dnsmasq</code>, the line&#8230;</p>
	<p>  args=&#8221;-l /tmp/dhcp.leases -K -F $(int2ip $start),$(int2ip $end),$(int2ip $netmask),12h ${wanif:+-I ${wanif} }&#8221;</p>
	<p>&#8230;which essentially removes the overriding configuration options that you then define in <code>dnsmasq.conf</code>. </p>
	<p>You do need to have <code>S50dnsmasq</code> in there in order to start the <code>dnsmasq</code> service.
</p>
]]></content:encoded>
				</item>
	<item>
 		<title>Comment on OpenWRT Advanced Firewall by: duaux</title>
		<link>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-2125</link>
		<pubDate>Tue, 29 Aug 2006 19:35:57 +0000</pubDate>
		<guid>http://garycourt.com/blog/post/openwrt-advanced-firewall/#comment-2125</guid>
					<description>Gary,

Thank you for this detailed walkthrough! It was exactly what I was looking for. However, after i followed through step by step, I ran into a small problem.

After I rebooted the router, my DNS request stoped working.

ie. I get an IP but cannot goto www.google.com, but can go by http://72.40.xx.xx

I suspect it has to do with:

/etc/dnsmasq.conf vs. /etc/init.d/S50dnsmasq

I stopped using S50dnsmasq and used /etc/dnsmasq.conf only.

Comments in the S50dnsmasq said if I am using /etc/dnsmasq.conf I can get rid of S50dnsmasq.

Thats what I did... :(

Anycomments appreciated.

Thank you.</description>
		<content:encoded><![CDATA[	<p>Gary,</p>
	<p>Thank you for this detailed walkthrough! It was exactly what I was looking for. However, after i followed through step by step, I ran into a small problem.</p>
	<p>After I rebooted the router, my DNS request stoped working.</p>
	<p>ie. I get an IP but cannot goto <a href='http://www.google.com' rel='nofollow'>www.google.com</a>, but can go by <a href='http://72.40.xx.xx' rel='nofollow'>http://72.40.xx.xx</a></p>
	<p>I suspect it has to do with:</p>
	<p>/etc/dnsmasq.conf vs. /etc/init.d/S50dnsmasq</p>
	<p>I stopped using S50dnsmasq and used /etc/dnsmasq.conf only.</p>
	<p>Comments in the S50dnsmasq said if I am using /etc/dnsmasq.conf I can get rid of S50dnsmasq.</p>
	<p>Thats what I did&#8230; <img src='http://garycourt.com/wp-images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
	<p>Anycomments appreciated.</p>
	<p>Thank you.
</p>
]]></content:encoded>
				</item>
</channel>
</rss>
