Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 24 Sep 2008 19:40:26 +0200
From:      Christer Hermansson <mail@chdevelopment.se>
To:        n j <nino80@gmail.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Recompile kernel or module for ipfw+nat?
Message-ID:  <48DA7B8A.2050606@chdevelopment.se>
In-Reply-To: <92bcbda50809230858j2dc39695x3135291bb2a3ddc7@mail.gmail.com>
References:  <92bcbda50809230858j2dc39695x3135291bb2a3ddc7@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
n j wrote:
> Hello everyone,
>
> I have a quick question regarding the setup of nat with ipfw.
> According to the handbook:
>
> "The following options must be in the kernel configuration file:
> options IPFIREWALL
> options IPDIVERT"
>
> however, there is a kernel module called ipdivert.ko similar to
> ipfw.ko for the firewall.
>
> Is it still necessary to recompile the kernel in order to use nat with
> ipfw? Or, to put it another way, is there a possibility to use nat and
> keep the generic kernel?
>
> Thanks for any input,
>   
You can choose to use the modules or make it static by recompile the kernel.

IMHO the ipnat(8) is a more simple way to get nat.

-- 

Christer Hermansson

http://www.chdevelopment.se





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?48DA7B8A.2050606>