From owner-freebsd-questions Thu Feb 15 15:42:47 2001 Delivered-To: freebsd-questions@freebsd.org Received: from snake.supranet.net (snake.supranet.net [205.164.160.19]) by hub.freebsd.org (Postfix) with ESMTP id E860C37B401 for ; Thu, 15 Feb 2001 15:42:42 -0800 (PST) Received: from localhost (john@localhost [127.0.0.1]) by snake.supranet.net (8.11.0/8.11.0) with ESMTP id f1FNgYw22832; Thu, 15 Feb 2001 17:42:35 -0600 (CST) (envelope-from john@snake.supranet.net) Date: Thu, 15 Feb 2001 17:42:33 -0600 (CST) From: John Heyer X-Sender: john@snake.supranet.net To: Nick Rogness Cc: freebsd-questions@FreeBSD.ORG Subject: Re: natd -reverse In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Tue, 13 Feb 2001, Nick Rogness wrote: > On Tue, 13 Feb 2001, John Heyer wrote: > > > > > Can anybody tell me what firewall rules I should be using to run natd > > -reverse -n ? I want to use proxy_rule to transparent > > caching via localhost:3128, but can't get natd -reverse running. I only > > have one internal interface. thanks > > I wouldn't use NAT for this purpose. ipfw fwd was designed > specifically for this use (from what I've read). That requires me to fake out my caching software (squid) to operate in accelorater mode, and feature such as authentication don't work. I think all I need are the ipfw lines to run natd -reverse. Anyone have them? -- Johh Heyer - john@personal.supranet.net - http://heyer.supranet.net "Me fail English? That's unpossible!" -- Ralph Wiggam To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message