Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 19 Nov 2000 00:11:56 +0100
From:      Manuel Enrique Garcia Cuesta <megarcia@intercom.es>
To:        Sam Carleton <scarleton@bigfoot.com>
Cc:        FreeBSD Questions <freebsd-questions@FreeBSD.ORG>
Subject:   Re: need help setting up firewall
Message-ID:  <20001119001156.F1196@ilex.kicelo.org>
In-Reply-To: <3A170674.1DFCF40@bigfoot.com>
References:  <3A170674.1DFCF40@bigfoot.com>

next in thread | previous in thread | raw e-mail | index | archive | help


=== Sam Carleton escribia
(Sat, Nov 18, 2000 at 05:45:08PM -0500):

> I have read through the “Setting-up a Dual-Homed Host using IPFW and
> NATD”, but the script is not working for me.  My setup is a bit
> different.  My connectivity is via a cable modem.
> 
> * In the article, it looks like the author was setup with a static
> external IP address.  I have a dynamic ip address.  How do I allow the
> DHCP server (Cable Modem) broadcasts to get to my outside NIC?

	Never done this myself, but I guess you have to
allow the packets in through your external interface.
Check /etc/services for the port numbers.


> * In the article, the author is only allowing the inside connections to
> connect to known DNS servers.  I run a caching DNS server on the inside
> so I need to have the firewall configured so that the internal DNS
> server can talk to any other DNS server.

	Your rules look ok to me.

> 
> * In the article, it looks like the author is allowing things like HTTP
> and SSH to come into the firewall machine.  I want those things to be
> passed onto another internal machine.

	You can use natd's -redirect_port option.


	Hope this helps

						Manuel Garcia




To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001119001156.F1196>