Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 19 Jul 2000 15:28:33 -0500 (CDT)
From:      BWS - Offwhite <brennan@offwhite.net>
To:        freebsd-ipfw@freebsd.org
Subject:   help with natd
Message-ID:  <Pine.BSF.4.21.0007191522450.61072-100000@home.offwhite.net>

next in thread | raw e-mail | index | archive | help
I have set up a private network here at my office and have everyone
behind the ipfw firewall.  I am using ipnat to do all forwarding and it
works like a charm, but I am having trouble.

I have one user who needs to ftp files to an outside host and PASV mode is
not working.  Somewhere along the way an ISP is blocking all PASV traffic,
making ftp break.  They refuse to change that due to security policies.

So what I would like to try is to give that user a static address and
route all traffic from an outside address to that static address...

111.222.111.222 < == > 192.168.1.11

I figure that if I forward all traffic from that public IP to his box
alone it should work so he does not have to use PASV mode.

Would this work?  Can anyone tell me what rules I would use with ipnat to
make this happen?

Thanks much,

Brennan Stehling - web developer and sys admin
projects: www.greasydaemon.com | www.onmilwaukee.com | www.sncalumni.com

Microsoft: Will you get a macro virus today?
http://www.greasydaemon.com/noms/ <- Why avoid MS?



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ipfw" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.21.0007191522450.61072-100000>