From owner-freebsd-bugs@FreeBSD.ORG Fri Dec 29 16:00:59 2006 Return-Path: X-Original-To: freebsd-bugs@hub.freebsd.org Delivered-To: freebsd-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id B8A3116A415 for ; Fri, 29 Dec 2006 16:00:59 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [69.147.83.40]) by mx1.freebsd.org (Postfix) with ESMTP id A71C113C428 for ; Fri, 29 Dec 2006 16:00:59 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.13.4/8.13.4) with ESMTP id kBTG0laK039194 for ; Fri, 29 Dec 2006 16:00:47 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.13.4/8.13.4/Submit) id kBTG0lUg039193; Fri, 29 Dec 2006 16:00:47 GMT (envelope-from gnats) Date: Fri, 29 Dec 2006 16:00:47 GMT Message-Id: <200612291600.kBTG0lUg039193@freefall.freebsd.org> To: freebsd-bugs@FreeBSD.org From: Remko Lodder Cc: Subject: Re: kern/107305: ipfw fwd doesn't seem to work X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Remko Lodder List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 29 Dec 2006 16:00:59 -0000 The following reply was made to PR kern/107305; it has been noted by GNATS. From: Remko Lodder To: Timofej Dod Cc: freebsd-gnats-submit@FreeBSD.org Subject: Re: kern/107305: ipfw fwd doesn't seem to work Date: Fri, 29 Dec 2006 16:32:42 +0100 On Fri, Dec 29, 2006 at 03:00:27AM +0000, Timofej Dod wrote: > > Trying to set up transparent proxy, have a rule: > > fwd 212.59.27.254,1031 log logamount 100 tcp from any to any dst-port 80 > > # ifconfig > em0: flags=8843 mtu 1500 > options=b > inet 212.59.27.254 netmask 0xffffff00 broadcast 212.59.27.255 > inet 212.59.27.252 netmask 0xffffff00 broadcast 212.59.27.255 > ether 00:30:48:70:bd:d2 > media: Ethernet autoselect (100baseTX ) > status: active > > netcat not showing anything but there are lines in /var/log/security: > > # nc -l 212.59.27.254 1031 > > kernel: ipfw: 999 Forward to 212.59.27.254:1031 TCP 212.59.27.249:60399 64.233.183.147:80 in via em0 > So is your machine actually configured to forward packets at all? use ``sysctl net.inet.ip.forwarding'', if that is 0 please change it to 1 by doing the following: ``sysctl net.inet.ip.forwarding=1''. If this works please dont forget to configure the option in /etc/sysctl.conf Let me know what this does please. -- Kind regards, Remko Lodder ** remko@elvandar.org FreeBSD ** remko@FreeBSD.org /* Quis custodiet ipsos custodes */