Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 2 Jun 2002 11:45:14 -0700
From:      "Crist J. Clark" <crist.clark@attbi.com>
To:        =?iso-8859-1?Q?Johan_Bj=F6rk?= <johan.bjork@qbrick.com>
Cc:        freebsd-stable@FreeBSD.ORG
Subject:   Re: Bridge and ARP problem
Message-ID:  <20020602114514.G20911@blossom.cjclark.org>
In-Reply-To: <3CFA5F70.9020000@qbrick.com>; from johan.bjork@qbrick.com on Sun, Jun 02, 2002 at 08:09:52PM %2B0200
References:  <3CFA5F70.9020000@qbrick.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Jun 02, 2002 at 08:09:52PM +0200, Johan Björk wrote:
> Hi folks,
> 
> I have a working firewall using BRIDGE and ipfilter (Patch from:
> http://people.freebsd.org/~cjc/).
> 
> But when I installed two more NIC's for our LAN I see some errors. I
> have a real IP-address on LAN outside interface, using ipnat for our
> traffic.
> I see:
> /kernel: arp: 00:01:02:8a:72:d8 is using my IP address XX.XXX.XXX.XX
> 
> (XX = outside IP-address) The mac-address is the outside interface of
> the DMZ-bridge. Both outside interfaces are connected to the same switch.
> 
> The network setup:
> 
> [Internet]
>        |
>        |
> [ Switch ]----[Outside interface DMZ; No Ip-address assign]
>     |
>     |
> [ Outside interface LAN]

I don't understand this diagram. Where is the FreeBSD bridge in
question? Who has the IP address XX.XXX.XXX.XX? What IP addresses are
assigned to the bridges interfaces?

> Why does my bridge think it have an IP-address? The setup is working,
> so I don´t know why I get this errors.
> 
> System:
> FreeBSD 4.5-STABLE-20020502
> 
> rc.conf:
> ipfilter_enable="YES"
> ipfilter_flags=""
> ipnat_enable="YES"
> gateway_enable="YES"

You probably don't need 'gateway_enable.' Where are you turning on
and configuring the bridging?
-- 
Crist J. Clark                     |     cjclark@alum.mit.edu
                                   |     cjclark@jhu.edu
http://people.freebsd.org/~cjc/    |     cjc@freebsd.org

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020602114514.G20911>