Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 15 Mar 2001 08:04:11 +0200
From:      "Patrick O'Reilly" <patrick@mip.co.za>
To:        "Steffen Vorrix" <steffen@vorrix.com>, <freebsd-ipfw@FreeBSD.ORG>
Subject:   RE: SSH Forwarding
Message-ID:  <NDBBIMKICMDGDMNOOCAIMEIFCEAA.patrick@mip.co.za>
In-Reply-To: <001701c0ace3$f860eff0$fd03a8c0@ws001>

next in thread | previous in thread | raw e-mail | index | archive | help
This is a multi-part message in MIME format.

------=_NextPart_000_00A5_01C0AD26.848EFDE0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

Steffen,

It seems strange that your rules work for HTTP and SMTP, but not for SSH.

You will need to supply more info before anyone can help.  Please list the
pertinent parts of your ipfw rules (rc.firewall), and your natd.conf.
Regards,
Patrick O'Reilly
---
"I do not feel obliged to believe that the same God who has endowed us with
sense, reason, and intellect has intended us to forego their use." --
Galileo Galilei

  -----Original Message-----
  From: owner-freebsd-ipfw@FreeBSD.ORG
[mailto:owner-freebsd-ipfw@FreeBSD.ORG]On Behalf Of Steffen Vorrix
  Sent: 15 March 2001 02:08
  To: freebsd-ipfw@FreeBSD.ORG
  Subject: SSH Forwarding


  I am trying to forward SSH to another FreeBSD box behind my FreeBSD
Firewall.  My FreeBSD Firewall answers to 3 public IP addresses.  I can get
all redirects working properly, from web to mail traffic, and I can connect
to the firewall with SSH, but I can't get through the firewall back to my
internal machine from an external source.  I have setup the redirect in my
natd.conf, checked for typos, etc, and have setup my firewall for testing
purposes to type open, and I still am not having any luck.  Can anyone think
of anything that I am missing?  All web traffic and mail traffic flow just
fine.  It is only SSH redirection that doesn't work.

  Any help would be appreciated.

  Chris Schremser

------=_NextPart_000_00A5_01C0AD26.848EFDE0
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META content=3D"text/html; charset=3Diso-8859-1" =
http-equiv=3DContent-Type>
<META content=3D"MSHTML 5.00.2314.1000" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN=20
class=3D820420006-15032001>Steffen,</SPAN></FONT></DIV>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN=20
class=3D820420006-15032001></SPAN></FONT>&nbsp;</DIV>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN =
class=3D820420006-15032001>It=20
seems strange that your rules work for HTTP and SMTP, but not for=20
SSH.</SPAN></FONT></DIV>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN=20
class=3D820420006-15032001></SPAN></FONT>&nbsp;</DIV>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN =
class=3D820420006-15032001>You=20
will need to supply more info before anyone can help.&nbsp; Please list =
the=20
pertinent parts of your ipfw rules (rc.firewall), and your=20
natd.conf.</SPAN></FONT></DIV>
<DIV><FONT color=3D#0000ff face=3DArial size=3D2><SPAN =
class=3D820420006-15032001>
<P><FONT size=3D2>Regards,<BR>Patrick O'Reilly<BR>---<BR>"I do not feel =
obliged to=20
believe that the same God who has endowed us with sense, reason, and =
intellect=20
has intended us to forego their use." -- Galileo Galilei=20
</FONT></P></SPAN></FONT></DIV>
<BLOCKQUOTE style=3D"MARGIN-RIGHT: 0px">
  <DIV align=3Dleft class=3DOutlookMessageHeader dir=3Dltr><FONT =
face=3DTahoma=20
  size=3D2>-----Original Message-----<BR><B>From:</B>=20
  owner-freebsd-ipfw@FreeBSD.ORG =
[mailto:owner-freebsd-ipfw@FreeBSD.ORG]<B>On=20
  Behalf Of </B>Steffen Vorrix<BR><B>Sent:</B> 15 March 2001 =
02:08<BR><B>To:</B>=20
  freebsd-ipfw@FreeBSD.ORG<BR><B>Subject:</B> SSH=20
Forwarding<BR><BR></DIV></FONT>
  <DIV><FONT face=3DArial size=3D2>I am trying to forward SSH to another =
FreeBSD box=20
  behind my FreeBSD Firewall.&nbsp; My FreeBSD Firewall answers to 3 =
public IP=20
  addresses.&nbsp; I can get all redirects working properly, from web to =
mail=20
  traffic, and I can connect to the firewall with SSH, but I can't get =
through=20
  the firewall back to my internal machine from an external =
source.&nbsp; I have=20
  setup the redirect in my natd.conf, checked for typos, etc, and have =
setup my=20
  firewall for testing purposes to type open, and I still am not having =
any=20
  luck.&nbsp; Can anyone think of anything that I am missing?&nbsp; All =
web=20
  traffic and mail traffic flow just fine.&nbsp; It is only SSH =
redirection that=20
  doesn't work.</FONT></DIV>
  <DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
  <DIV><FONT face=3DArial size=3D2>Any help would be =
appreciated.</FONT></DIV>
  <DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
  <DIV><FONT face=3DArial size=3D2>Chris=20
Schremser</FONT></DIV></BLOCKQUOTE></BODY></HTML>

------=_NextPart_000_00A5_01C0AD26.848EFDE0--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ipfw" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?NDBBIMKICMDGDMNOOCAIMEIFCEAA.patrick>