From owner-freebsd-net@FreeBSD.ORG Tue Jul 25 12:03:01 2006 Return-Path: X-Original-To: freebsd-net@freebsd.org Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id DEFC416A4E1 for ; Tue, 25 Jul 2006 12:03:01 +0000 (UTC) (envelope-from zec@icir.org) Received: from xaqua.tel.fer.hr (xaqua.tel.fer.hr [161.53.19.25]) by mx1.FreeBSD.org (Postfix) with ESMTP id 0794843D6D for ; Tue, 25 Jul 2006 12:02:57 +0000 (GMT) (envelope-from zec@icir.org) Received: by xaqua.tel.fer.hr (Postfix, from userid 20006) id B45369B657; Tue, 25 Jul 2006 14:02:56 +0200 (CEST) X-Spam-Checker-Version: SpamAssassin 3.1.1 (2006-03-10) on xaqua.tel.fer.hr X-Spam-Level: X-Spam-Status: No, score=-4.4 required=5.0 tests=ALL_TRUSTED,BAYES_00 autolearn=ham version=3.1.1 Received: from [192.168.200.106] (zec2.tel.fer.hr [161.53.19.79]) by xaqua.tel.fer.hr (Postfix) with ESMTP id CB9C39B655; Tue, 25 Jul 2006 14:02:50 +0200 (CEST) From: Marko Zec To: Julian Elischer Date: Tue, 25 Jul 2006 14:02:46 +0200 User-Agent: KMail/1.9.1 References: <7.0.1.0.2.20060721105813.0971ae90@lariat.net> <20060724192419.GA5474@uk.tiscali.com> <44C5302D.1020807@elischer.org> In-Reply-To: <44C5302D.1020807@elischer.org> MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: <200607251402.46797.zec@icir.org> Cc: Brett Glass , freebsd-net@freebsd.org, Brian Candler Subject: Re: Multiple NAT router X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 25 Jul 2006 12:03:02 -0000 On Monday 24 July 2006 22:40, Julian Elischer wrote: ... > >Also, what would really suit him is a netgraph IP interface node - i.e. > >something which takes raw ethernet frames from the interface, performs IP > >encapsulation/decapsulation and ARP - and an IP forwarding node with its > > own forwarding table. Has anyone done any work in that area? It would be > > really cool for VPN edge routing, for example. > > an ng_ip node :-) > I've considerred it. The Click modular router already provides a relatively complete IP forwarding path, including ARP handlers and several flavors of IP routing lookup nodes. I think it also icludes a NAT module, but have never tried it. Most importantly, it can work as a kernel module in FreeBSD, but only on 4.x. Marko