Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 2 May 2003 18:33:09 +0200
From:      Georg Graf <georg-ipfw@graf.priv.at>
To:        freebsd-ipfw@freebsd.org
Subject:   Re: ipfw + http : apache
Message-ID:  <20030502163309.GB76931@graf.priv.at>
In-Reply-To: <000801c310a7$ae021220$0a00a8c0@dzelde>
References:  <000801c310a7$ae021220$0a00a8c0@dzelde>

Next in thread | Previous in thread | Raw E-Mail | Index | Archive | Help
On Fri, May 02, 2003 at 03:38:05PM +0300, Martins Dzelde wrote:

[...]

> > 00100    xxx    xxx    divert 8668 ip from any to any
> > 00200    xxx    xxx    allow ip from any to any
> > 65535    0        0        deny ip from any to any

I'm missing the interface of the internet connection of box A in rule
100. You should also check that natd is running with the "-interface
xxxy" option.

Search for "RUNNING NATD" in man natd.

hth,
-- 
Georg Graf       http://georg.graf.priv.at/       PGP Key ID: 0xA5232AD5
Gobergasse 43/2             A-1130 Wien               Tel: +43 1 8796723



Want to link to this message? Use this URL: <http://docs.FreeBSD.org/cgi/mid.cgi?20030502163309.GB76931>