Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 20 Aug 1998 15:02:50 +0100
From:      Matthew Spiers <matt@pavilion.net>
To:        questions@FreeBSD.ORG
Subject:   ipfw with adress translation and ipltd
Message-ID:  <19980820150250.A23813@pavilion.net>

next in thread | raw e-mail | index | archive | help
At present we are now running ipfw on a BSD box to do routing, with a divert
rule to ipltd which enables us to bandwidth restrict the subnets.
We are considering using adress translation as we'd like to conserve IP
space.  Our understanding is that we will need another divert rule
to natd. The man ipfw states ' If a packet matches more than one divert
and/or tee rule, all but the last are ignored.'

Now we are concerned that this might mean only one divert is possible -
or does it mean diverts to a specific port are only allowed once (loop
avoidance)?
Or if we natd first, will the 'altered' IP allow us to have another divert
rule as it's a 'different' IP passing through the ipfw rules?

Anyone have any thoughts/information on this subject?

Regards,

Matt
Pavilion Internet plc.

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19980820150250.A23813>