Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 4 Mar 2003 11:27:05 -0600
From:      "Brian Henning" <b1henning@hotmail.com>
To:        "freebsd" <freebsd-questions@FreeBSD.ORG>
Subject:   firewall
Message-ID:  <OE25wtjWJ2etdYQIqJC0001d143@hotmail.com>

next in thread | raw e-mail | index | archive | help
Hello-
I am pretty new to natd and ipfw, so i would like to be able to describe what i
want
to be able to do with my new bsd router. This is to understand the nomenclature
and how understand

how other people use bsd as a router/firewall.
So far i have manually done this to my router.

>sysctl net.inet.ip.forwarding=1  # gateway_enable="YES"
>natd -interface rl1
>ipfw -f flush
>ipfw add divert natd all from any to any via rl1
>ipfw add pass all from any to any

notes:
r11 is my external network
rl0 is my internal network

here is what i would like to do in a more standard way. Please correct my
wording
if it is off or if it unclear.

port forward: ssh from a local machine port 22 to the router port 22, open to
the outside
port forward: vpn port 5001 for all local machines, open to the outside
block all servers on the router to the outside, but not the inside
anyone on the local network has access to services on the router

what else should i consider?

is port forwarding done with ip or with mac address?

cheers,

brian

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?OE25wtjWJ2etdYQIqJC0001d143>