Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 15 Feb 1999 09:31:56 -0700
From:      nekhbet@rt66.com
To:        Brian Somers <brian@Awfulhak.org>
Cc:        nekhbet@rt66.com, questions@FreeBSD.ORG
Subject:   Re: static nat and ipfw not seeing translation 
Message-ID:  <19990215163156.25212.qmail@rt66.com>
In-Reply-To: Your message of "Sat, 13 Feb 1999 12:59:58 GMT." <199902131259.MAA96914@keep.lan.Awfulhak.org> 

next in thread | previous in thread | raw e-mail | index | archive | help
Brian-
   When i take out the first two diverts I get normal natd translation.
It still sends my traffic to 200.0.0.3 out tun0 and never gets seen
again.  Now that I think about it is that the problem?

   Anyways this setup seemed to work for David, 
see DejaNews for "static nat ipfw".

thanks
aron
> > Hi.  I read David's postings around 1/26 relating to this matter
> > but I am still having problems.  I have a subnet with (not the
> > real numbers) 200.0.0.1 on the interface card talking to the net.
> > 200.0.0.3 is the static ip that I want for my other machine whose
> > internal ip is 192.168.0.3.  My gateway nic has the internal address
> > of 192.168.0.1.  These are the rules and the natd command I am using:
> > 
> > divert natd ip from 192.168.0.3 to any out via tun0
> > divert natd ip from any to 200.0.0.3 in from tun0
> > divert natd ip from any to any via tun0
> > 
> > natd -redirect_address 200.0.0.3 192.168.0.3 -n tun0
> [.....]
> > Any ideas?  Thanks in advance.
> 
> I would have thought the above divert rules would confuse natd - 
> newer versions of the FreeBSD kernel will take the re-injected packet 
> and feed it to the next ipfw rule - making natd process your packets 
> twice.
> 
> What happens if you remove the first two divert lines ?
> 
> > -aron warren
> 
> -- 
> Brian <brian@Awfulhak.org> <brian@FreeBSD.org> <brian@OpenBSD.org>
>       <http://www.Awfulhak.org>;
> Don't _EVER_ lose your sense of humour !
> 
> 
> 



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19990215163156.25212.qmail>