Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 20 Mar 2003 13:56:23 -0600
From:      Henrik Hudson <lists@rhavenn.net>
To:        "W. J. Williams" <willardjwilliams@yahoo.com>, freebsd-questions@freebsd.org
Subject:   Re: IPFW firewall rules not complete
Message-ID:  <200303201356.23830.lists@rhavenn.net>
In-Reply-To: <20030320194544.26310.qmail@web13505.mail.yahoo.com>
References:  <20030320194544.26310.qmail@web13505.mail.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help

> I am experimenting with IPFW firewalls and have hit a roadblock.  I am
> trying to allow ssh, mail, dns requests, pings and traceroutes out, but
> not in and webmin (port 10000).  I am hitting a roadblock on mail and
> pings out.  Hope someone can help me...I am new to this and don=B4t
> understand firewall rules syntax fully.  I have funded my own lab to
> experiment with this fun and powerful stuff...
>

Did you setup NAT and IPDIVERT in your kernel?

http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/natd.html

Even though you have 2 private networks, you still need to run NAT accross=
=20
those subnets or add static routes to your DSL modem, otherwise any traffic=
=20
coming back in from the DSL modem won't know where to go to find the fxp1=20
network.

Check out the handbook, it should work for you.

=2D-=20

Henrik Hudson
lists@rhavenn.net

You know, Hobbes, some days even my lucky
rocket ship underpants don't help."  Calvin

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200303201356.23830.lists>