From owner-freebsd-questions@FreeBSD.ORG Thu Apr 8 03:33:37 2010 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 48CE6106566B for ; Thu, 8 Apr 2010 03:33:37 +0000 (UTC) (envelope-from osp@aloha.com) Received: from relay.pixi.com (relay.pixi.com [206.127.224.101]) by mx1.freebsd.org (Postfix) with ESMTP id 140248FC14 for ; Thu, 8 Apr 2010 03:33:36 +0000 (UTC) Received: from leka.aloha.com (leka.aloha.com [206.127.224.85]) by relay.pixi.com (8.13.8+Sun/8.13.6) with ESMTP id o382qIZe019804 for ; Wed, 7 Apr 2010 16:52:18 -1000 (HST) Received: from [66.248.53.73] (02-073.169.popsite.net [66.248.53.73]) by leka.aloha.com (8.13.8+Sun/8.12.11) with SMTP id o382qFH7019790 for ; Wed, 7 Apr 2010 16:52:17 -1000 (HST) Message-Id: <201004080252.o382qFH7019790@leka.aloha.com> Date: Wed, 7 Apr 2010 16:51 -1000 From: "Gary Dunn" To: "freebsd-questions" MIME-Version: 1.0 X-Mailer: Newton Mail V/5.2.1 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Subject: Kernel Config for NAT X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 08 Apr 2010 03:33:37 -0000 I am setting up a router to share one Wi-Fi link between a few computers = that only support CAT-5. Like a wireless access point except wired and = wireless sides are reversed. My question is about the ipfw packet filter. = >From the handbook section on NAT, 31.9.3, I can achieve what I need with = boot loader options. Section 31.9.4 describes alternatives for building a = custom kernel. In contrast, the chapter on ipfw states several times that = NAT requires a custom kernel - 30.6.1, 30.6.2, 30.6.5.7. I want to use freebsd-update and building a custom kernel eliminates that = option. Which is correct? Do I need to build a custom kernel to use NAT? -- Gary Dunn, Honolulu osp@aloha.com http://openslate.net/ http://e9erust.blogspot.com/ Sent from a Newton 2100 via Mail V