From owner-freebsd-questions@FreeBSD.ORG Tue Apr 1 10:51:29 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8596B37B401 for ; Tue, 1 Apr 2003 10:51:29 -0800 (PST) Received: from devil.stderror.at (at00d01-adsl-194-118-044-149.nextranet.at [194.118.44.149]) by mx1.FreeBSD.org (Postfix) with ESMTP id CCCB243F85 for ; Tue, 1 Apr 2003 10:51:28 -0800 (PST) (envelope-from pinhead@stderror.at) Received: by devil.stderror.at (Postfix, from userid 1000) id 11BC1171EF; Tue, 1 Apr 2003 20:51:28 +0200 (CEST) Date: Tue, 1 Apr 2003 20:51:28 +0200 From: Toni Schmidbauer To: freebsd-questions@freebsd.org Message-ID: <20030401185127.GE10095@devil.stderror.at> Mail-Followup-To: freebsd-questions@freebsd.org References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="R6sEYoIZpp9JErk7" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.4.1i Subject: Re: VPN pass through? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: toni@stderror.at List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 01 Apr 2003 18:51:29 -0000 --R6sEYoIZpp9JErk7 Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Apr 01, 2003 at 09:39:57AM -0900, Mark-Nathaniel Weisman wrote: > I have a W2K VPN server (RRAS using PPTP) setup behind my FreeBSD firewal= l. I also have a web server, mail server, and several others. I've setup up= my ipfw to allow packets for port 1723 on both tcp and udp from any to any= , and setup up NATD to redirect_port 1723 to the internal address of my VPN= box. I am unable to pass the packets through, and when I put the redirect = statement in my natd.conf file, none of the redirection works. I've tried r= edirecting both the port and the protocol to no avail. Can someone take a m= oment to explain where I'm going wrong? if you provide your (anonymized) ipfw and nat config, helping would be a lot easier. please break your lines at about 75 chars, your message is a lot easier to read then.=20 toni --=20 Behandle die Menschen, als w=E4ren sie, was sie sein | toni@stderror.at sollten, und du wirst ihnen helfen, zu werden, was | Toni Schmidbauer sie sein k=F6nnen. - Johann Wolfgang von Goethe | --R6sEYoIZpp9JErk7 Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (FreeBSD) iD8DBQE+id+vu/mjSj7RMocRAtDyAJ0RK2DbrnouzH2+uGU+ADnUhnp77gCgiCXw 2c+rDynET1E6Zu3l8YY6LB4= =BJga -----END PGP SIGNATURE----- --R6sEYoIZpp9JErk7--