Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 27 Jun 2020 23:37:30 +0200
From:      =?utf-8?B?SsOBS8OTIEFuZHLDoXM=?= <jako.andras@eik.bme.hu>
To:        David Mehler <dave.mehler@gmail.com>
Cc:        freebsd-jail <freebsd-jail@freebsd.org>
Subject:   Re: FreeBSD 12.1, vnet jail, and internet access
Message-ID:  <20200627213730.GE77414@eik.bme.hu>
In-Reply-To: <CAPORhP4XmmT%2B2ZcDazZVAguBPAG2qYQaWFGWE73Sdgfk3htRVA@mail.gmail.com>
References:  <CAPORhP7mU=4gMYWhkLPK-Sdyxcuhry4YTM%2B-vXOs27qeAc2a2Q@mail.gmail.com> <20200627204831.GC77414@eik.bme.hu> <CAPORhP4XmmT%2B2ZcDazZVAguBPAG2qYQaWFGWE73Sdgfk3htRVA@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
> I was under the impression that the two stacks were separate?

They are. But I don't think your ISP knows anything about your private
subnet, so they won't send IP packets with your private destination
address to you. And most probably they won't accept IP packets with your
private source address from you. So you have to translate these private
addresses if you want your ISP (and others) to forward them.

> Should I nat on the bridge or epair?

On the bridge, I guess.

AndrĂ¡s



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20200627213730.GE77414>