From owner-freebsd-doc@FreeBSD.ORG Wed Mar 30 22:16:40 2005 Return-Path: Delivered-To: freebsd-doc@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 761FD16A4CE for ; Wed, 30 Mar 2005 22:16:40 +0000 (GMT) Received: from mail.rogerscorp.us (adsl-63-198-77-4.dsl.lsan03.pacbell.net [63.198.77.4]) by mx1.FreeBSD.org (Postfix) with ESMTP id 018CA43D58 for ; Wed, 30 Mar 2005 22:16:40 +0000 (GMT) (envelope-from rob@rogerscorp.us) Received: (qmail 91652 invoked by uid 1003); 30 Mar 2005 22:16:37 -0000 Received: from rob@rogerscorp.us by mail.rogerscorp.us by uid 89 with qmail-scanner-1.22 (clamscan: 0.70. spamassassin: 2.63. Clear:RC:1(63.198.77.6):. Processed in 4.783499 secs); 30 Mar 2005 22:16:37 -0000 Received: from unknown (HELO jack1) (rob@rogerscorp.us@63.198.77.6) by adsl-63-198-77-4.dsl.lsan03.pacbell.net with SMTP; 30 Mar 2005 22:16:32 -0000 From: "Rob Rogers" To: Date: Wed, 30 Mar 2005 14:16:33 -0800 Message-ID: <002001c53576$21d99d90$1e00a8c0@jack1> MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook, Build 10.0.6626 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.2527 Importance: Normal Subject: Error in Docs X-BeenThere: freebsd-doc@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Documentation project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 30 Mar 2005 22:16:40 -0000 Page: http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/firewalls-ipf.html Section: 24.5.20 Port Redirection The docs mention port redirection with IPNAT using map dc0 20.20.20.5/32 port 80 -> 10.0.10.25 port 80 or map dc0 0/32 port 80 -> 10.0.10.25 port 80 and a DNS example: map dc0 20.20.20.5/32 port 53 -> 10.0.10.33 port 53 udp These are all incorrect, port redirection with IPNAT uses "rdr" not "map" and the mask for "0" is "/0" not "/32". So the correct examples should be: rdr dc0 20.20.20.5/32 port 80 -> 10.0.10.25 port 80 or rdr dc0 0/0 port 80 -> 10.0.10.25 port 80 and a DNS example: rdr dc0 20.20.20.5/32 port 53 -> 10.0.10.33 port 53 udp Rob Rogers Product Manager Jacklighter, Inc Phone 714.628.0556 Fax 714.639.7785