Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 14 Jun 2012 23:42:43 +0700
From:      Eugene Grosbein <egrosbein@rdtc.ru>
To:        "net@freebsd.org" <net@freebsd.org>
Subject:   ip_output: NAT then IPSEC
Message-ID:  <4FDA1483.4090207@rdtc.ru>

next in thread | raw e-mail | index | archive | help
Hi!

How do I make FreeBSD 8-based router/NAT/security gateway
first perform NAT for outgoing packets then apply IPSEC transport mode
for plain TCP traffic?

Presently, locally originated packets are encrypted just fine
but routed and NAT-ed packet go out unencrypted.

I use ipfw nat.

Eugene Grosbein



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4FDA1483.4090207>