From owner-freebsd-questions Tue Dec 31 10:39:26 1996 Return-Path: Received: (from root@localhost) by freefall.freebsd.org (8.8.4/8.8.4) id KAA12695 for questions-outgoing; Tue, 31 Dec 1996 10:39:26 -0800 (PST) Received: from plains.nodak.edu (tinguely@plains.NoDak.edu [134.129.111.64]) by freefall.freebsd.org (8.8.4/8.8.4) with ESMTP id KAA12685 for ; Tue, 31 Dec 1996 10:39:24 -0800 (PST) Received: (from tinguely@localhost) by plains.nodak.edu (8.8.3/8.8.3) id MAA28768; Tue, 31 Dec 1996 12:39:15 -0600 (CST) Date: Tue, 31 Dec 1996 12:39:15 -0600 (CST) From: Mark Tinguely Message-Id: <199612311839.MAA28768@plains.nodak.edu> To: kristyn@gnu.ai.mit.edu, questions@freebsd.org Subject: Re: IPfilter and NAT Sender: owner-questions@freebsd.org X-Loop: FreeBSD.org Precedence: bulk yes, I have run the IP filter and NAT on 2.1.5 (2.1.6 should not be any different). I needed to run the version 3.1.2beta instead of ip filter 3.1.1. yes, you need to enable the GATEWAY feature. the ipnat error sounds like you did not load the loadable kernel module before running the nat rules. I use kernel ppp with the IP filter/NAT and use a simple script to load the kernel loadble module, and figure out the new IP address and then issue the ipnat instructions. I will put my scripts in ftp://www.cs.ndsu.NoDak.edu/nat-scripts/ for you to look at. --mark.