From owner-freebsd-net@FreeBSD.ORG Tue Feb 27 10:55:49 2007 Return-Path: X-Original-To: freebsd-net@freebsd.org Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 0C21116A402; Tue, 27 Feb 2007 10:55:49 +0000 (UTC) (envelope-from ml.diespammer@netfence.it) Received: from parrot.aev.net (parrot.aev.net [212.31.247.179]) by mx1.freebsd.org (Postfix) with ESMTP id 8809813C47E; Tue, 27 Feb 2007 10:55:48 +0000 (UTC) (envelope-from ml.diespammer@netfence.it) Received: from soth.ventu (adsl-ull-235-229.51-151.net24.it [151.51.229.235]) (authenticated bits=128) by parrot.aev.net (8.14.0/8.13.8) with ESMTP id l1RB34mT055412 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=OK); Tue, 27 Feb 2007 12:03:10 +0100 (CET) (envelope-from ml.diespammer@netfence.it) Received: from [10.1.2.18] (alamar.ventu [10.1.2.18]) by soth.ventu (8.14.0/8.13.8) with ESMTP id l1RAtvrZ062325; Tue, 27 Feb 2007 11:55:57 +0100 (CET) (envelope-from ml.diespammer@netfence.it) Message-ID: <45E40E28.3080700@netfence.it> Date: Tue, 27 Feb 2007 11:55:36 +0100 From: Andrea Venturoli User-Agent: Thunderbird 1.5.0.9 (X11/20070119) MIME-Version: 1.0 To: "Bruce A. Mah" References: <45DDABA6.60407@netfence.it> <45DDC9CD.1020207@freebsd.org> In-Reply-To: <45DDC9CD.1020207@freebsd.org> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Scanned-By: MIMEDefang 2.61 on 212.31.247.179 Cc: freebsd-net@freebsd.org Subject: SOLVED: Bridge and NAT problems X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: freebsd-net@freebsd.org List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 27 Feb 2007 10:55:49 -0000 Bruce A. Mah wrote: > If you can, try switching to using if_bridge(4). You (probably) want to > assign the public NAT address to the bridge0 interface, and leave the > physical interfaces making up the bridges (xl0 and rl1 in your case) > unnumbered. I've had good experiences with this type of configuration. I did what you suggested: I don't think anything ever went as smooth as this. So far it's working perfectly. Thanks. bye av.