From owner-freebsd-questions@FreeBSD.ORG Wed Jun 25 11:49:38 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 5221137B404 for ; Wed, 25 Jun 2003 11:49:38 -0700 (PDT) Received: from lagash.satanosphere.com (216-210-218-82.atgi.net [216.210.218.82]) by mx1.FreeBSD.org (Postfix) with ESMTP id B7C2843FD7 for ; Wed, 25 Jun 2003 11:49:36 -0700 (PDT) (envelope-from jeremy@lagash.satanosphere.com) Received: from lagash.satanosphere.com (localhost [127.0.0.1]) h5PJG7bO070066 for ; Wed, 25 Jun 2003 12:16:08 -0700 (PDT) (envelope-from jeremy@lagash.satanosphere.com) Received: (from jeremy@localhost) by lagash.satanosphere.com (8.12.6p2/8.12.6/Submit) id h5PJG7h3070065 for freebsd-questions@freebsd.org; Wed, 25 Jun 2003 12:16:07 -0700 (PDT) Date: Wed, 25 Jun 2003 12:16:07 -0700 From: Jeremy Bingham To: freebsd-questions@freebsd.org Message-ID: <20030625191607.GD69633@lagash.satanosphere.com> References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="kvUQC+jR9YzypDnK" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.4i Sender: jeremy@satanosphere.com X-PGP-Key: http://home.satanosphere.com/jeremy-pubkey.asc X-Spam-Status: No, hits=-39.4 required=7.0 tests=EMAIL_ATTRIBUTION,IN_REP_TO,PGP_SIGNATURE_2, QUOTED_EMAIL_TEXT,QUOTE_TWICE_1,REFERENCES, REPLY_WITH_QUOTES,USER_AGENT_MUTT version=2.50 X-Spam-Report: ---- Start SpamAssassin results -39.40 points, 7 required; * -6.3 -- Contains a PGP-signed message (signature attached) * -3.3 -- Has a In-Reply-To header * -6.6 -- Has a valid-looking References header * -6.5 -- BODY: Contains what looks like an email attribution * -0.6 -- BODY: Contains twice quoted reply * -3.2 -- BODY: Contains what looks like a quoted email text * -6.5 -- Reply with quoted text * -6.4 -- User-Agent header indicates a non-spam MUA (Mutt) ---- End of SpamAssassin results X-Spam-Checker-Version: SpamAssassin 2.50 (1.173-2003-02-20-exp) Subject: Re: NAT Dropping Internal Connection X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 25 Jun 2003 18:49:38 -0000 --kvUQC+jR9YzypDnK Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On 25/06/03 14:39 -0400, FBSD_User wrote: > Sounds like hardware problem with the switch or hub on your LAN. Rebooting the machine makes the NAT stuff work again. Could the hub still be a problem in that case? -j >=20 > -----Original Message----- > From: owner-freebsd-questions@freebsd.org > [mailto:owner-freebsd-questions@freebsd.org]On Behalf Of Jeremy > Bingham > Sent: Wednesday, June 25, 2003 2:25 PM > To: freebsd-questions@freebsd.org > Subject: NAT Dropping Internal Connection >=20 > I have a P-200 running 4.8-STABLE running as a NAT box at home. It > runs > well, except that periodically it will drop it's connection on the > internal side of the network. The external interface still works, > but the > internal machines can't ping the NAT box at all and the NAT box > can't > ping the internal machines. >=20 > I've looked through the mailing lists and google for hints why this > might be happening, but I can't find anything. /var/log/messages > also > reveals nothing. Here are the relevant kernel options: >=20 > options IPFIREWALL > options IPFIREWALL_FORWARD > options IPFIREWALL_DEFAULT_TO_ACCEPT > options IPDIVERT > options IPFILTER > options IPSTEALTH > options RANDOM_IP_ID > options TCP_DROP_SYNFIN >=20 > Would any of those cause the problem, or is there a kernel option > that > I'm accidentally leaving off? >=20 > Thanks, >=20 > -Jeremy Bingham >=20 >=20 > ---------------------------------------------- > /* You are not expected to understand this. */ >=20 > Captain_Tenille > http://www.satanosphere.com/ > jeremy@satanosphere.com >=20 --=20 ---------------------------------------------- /* You are not expected to understand this. */ Captain_Tenille http://www.satanosphere.com/ jeremy@satanosphere.com --kvUQC+jR9YzypDnK Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (FreeBSD) iD8DBQE++fT2z9BfgBOfXn0RAkoBAKC5U25WPseDueZkA0eUSKk1WmKKigCcCOG4 pianzAqorWvUqZsX5hlqUB0= =6r3r -----END PGP SIGNATURE----- --kvUQC+jR9YzypDnK--