Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 26 Aug 2000 23:05:24 -0700
From:      Kent Stewart <kstewart@urx.com>
To:        Chip <chip@wiegand.org>, "freebsd-questions@freebsd.org" <freebsd-questions@FreeBSD.ORG>
Subject:   Re: IPFW redirect rule?
Message-ID:  <39A8AFA4.CDC6981A@urx.com>
References:  <39A8AC92.1203D118@wiegand.org> <39A8AEB7.F03138FF@urx.com>

next in thread | previous in thread | raw e-mail | index | archive | help


Kent Stewart wrote:
> 
> Chip wrote:
> >
> >  I am setting up a machine as a firewall and am starting by
> > using the default ipfw rc.firewall rules and am following
> > the instructions in the Complete FreeBSD book by Greg
> > Lehey.  I want to add a redirect rule to allow access to my
> > web server on another machine. I am not sure if I use rdr
> > or divert, maybe I am confusing ipfw and ipfilter stuff.
> > I haven't found an answer on the FreeBSD Diary or in
> > the archives. My kernel is reconfigured as directed in the
> > book, everything else is set up as per the instructions.
> > My firewall machine has two nics, one with the public
> > ip address,208.194.173.xx, the other with a private ip
> > address, part of my home network. My web server also
> > has a private ip address, part of my home network,
> > 192.168.0.x. I'm sure this is probably no problem, I
> > just haven't found the answer anywhere.
> 
> I had the same experience. I found the example at
> http://www.mostgraveconcern.com/freebsd/ for the "Dual homed setup"
> worked out of the box.

I forgot something. The latest rc.firewall has a divert located at the
top of "Simple". I modified my addition of the "Dual Homed setup" to
look like that for the non-routeable networks.

That eliminates the "in" and "out" sections for those networks.

Kent

-- 
Kent Stewart
Richland, WA

mailto:kbstew99@hotmail.com
http://kstewart.urx.com/kstewart/index.html
FreeBSD News http://daily.daemonnews.org/


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?39A8AFA4.CDC6981A>