Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 26 Jul 2000 02:20:07 -0500
From:      Stephen Montgomery-Smith <stephen@math.missouri.edu>
To:        cjclark@alum.mit.edu
Cc:        Mike Hoskins <mike@adept.org>, freebsd-security@FreeBSD.ORG
Subject:   Re: Problems with natd and simple firewall
Message-ID:  <397E9127.D2E661C2@math.missouri.edu>
References:  <397D4062.4A1FFFE2@math.missouri.edu> <Pine.BSF.4.21.0007251214390.27676-100000@snafu.adept.org> <20000725235508.D307@pool0460.cvx20-bradley.dialup.e>

next in thread | previous in thread | raw e-mail | index | archive | help
"Crist J. Clark" wrote:
> 
> On Tue, Jul 25, 2000 at 12:23:15PM -0700, Mike Hoskins wrote:
> > On Tue, 25 Jul 2000, Stephen Montgomery-Smith wrote:
> >
> > > >         ${fwcmd} add deny all from any to 192.168.0.0/16 via ${oif}
> > > >         $fwcmd add divert natd all from any to any via ${natd_interface}
> > > Yes, I had the same idea over dinner.  Trouble is, it doesn't work.
> > > I tried it.
> >

Sorry guys - I must have made a mistake.  It does seem to work now
that I try it.  Maybe I made a typo somewhere.

Without dynamic rules, this really seems the best solution to me.

-- 
Stephen Montgomery-Smith
Department of Mathematics, University of Missouri, Columbia, MO 65211
Phone 573-882-4540, fax 573-882-1869
http://www.math.missouri.edu/~stephen  stephen@math.missouri.edu


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?397E9127.D2E661C2>