From owner-freebsd-questions@freebsd.org Mon Sep 14 01:08:12 2015 Return-Path: Delivered-To: freebsd-questions@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 2711AA038B1 for ; Mon, 14 Sep 2015 01:08:12 +0000 (UTC) (envelope-from george@vagner.com) Received: from p3plsmtpa09-08.prod.phx3.secureserver.net (p3plsmtpa09-08.prod.phx3.secureserver.net [173.201.193.237]) (using TLSv1.2 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (Client CN "Bizanga Labs SMTP Client Certificate", Issuer "Bizanga Labs CA" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 03F8718F4 for ; Mon, 14 Sep 2015 01:08:11 +0000 (UTC) (envelope-from george@vagner.com) Received: from [192.168.0.137] ([162.72.176.22]) by p3plsmtpa09-08.prod.phx3.secureserver.net with id Gp7x1r0070VNGai01p82F0; Sun, 13 Sep 2015 18:08:05 -0700 Message-ID: <55F61DEE.7010506@vagner.com> Date: Sun, 13 Sep 2015 21:07:58 -0400 From: george vagner User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:31.0) Gecko/20100101 Thunderbird/31.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: 10.2-r strange issue with gateway References: <5C137CAA56211A448C4F58E75EFB6266C285B582@EXCHANGE.lan.theconcept.ru> <55E84B51.7070103@sentex.net> <5C137CAA56211A448C4F58E75EFB6266C285E5CC@EXCHANGE.lan.theconcept.ru> <20150903114614.17c98a13@Papi> In-Reply-To: <20150903114614.17c98a13@Papi> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 14 Sep 2015 01:08:12 -0000 i have bee having issues with getting my newly installed 10.2-r system set up as a gateway. i have been away from freebsd since about version 8 so a little rusty athough i started at version 2.2. i have my network interfaces up and working, one is a USB 10/100 supported by the axe driver the other is on-board nfe0. i have the gateway_enable="YES" in my rc.conf and have natd enabled. it is a very simple 192.168.x.x to dhcped nfe0. here is my problem, i can ping the internet from inside all ok, i can tracert out to places just fine from the windows machines etc, but i cannot get any http,ftp,telnet,mail thru the gateway. i have my firewall set to open and have the divert rule such as divert 8668 from any ip4 to any via nfe0 why would pings and traceroutes get thru the nat but not other protocols and where can i look to fix it.? any help would be appreciated. george