From owner-freebsd-questions Wed Jan 31 23:45:52 2001 Delivered-To: freebsd-questions@freebsd.org Received: from whale.sunbay.crimea.ua (whale.sunbay.crimea.ua [212.110.138.65]) by hub.freebsd.org (Postfix) with ESMTP id 17EC637B491 for ; Wed, 31 Jan 2001 23:45:31 -0800 (PST) Received: (from ru@localhost) by whale.sunbay.crimea.ua (8.11.0/8.11.0) id f117ivf04565; Thu, 1 Feb 2001 09:44:57 +0200 (EET) (envelope-from ru) Date: Thu, 1 Feb 2001 09:44:57 +0200 From: Ruslan Ermilov To: David Erickson Cc: freebsd-questions@FreeBSD.ORG Subject: Re: Freebsd and NATD of ip-protocol-50 Message-ID: <20010201094457.A3621@sunbay.com> Mail-Followup-To: David Erickson , freebsd-questions@FreeBSD.ORG References: <000e01c08c18$1c80f110$0a02a8c0@columbia.mentis.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <000e01c08c18$1c80f110$0a02a8c0@columbia.mentis.org>; from erickson@mddsg.com on Thu, Feb 01, 2001 at 01:27:54AM -0500 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Thu, Feb 01, 2001 at 01:27:54AM -0500, David Erickson wrote: > > I am running Freebsd 3.5-STABLE. I am trying to do a static NAT > translate to a real internet address from one of my machines on the > internal lan to the Checkpoint firewall at work which uses > ip-protocol-50. When I look at natd with the -v flag it doesn't > translate my internal address to the external address. All other tcp > and udp translations occur normally though. Any ideas on how I can > get this to work? I connect normally when doing this behind a cisco > router running nat in my tests. So Im pretty sure my problem here is > natd. Any help would be appreciated. Please email me directly at > erickson@mddsg.com > Do you have the ``divert natd esp from ... to ...'' rule? Cheers, -- Ruslan Ermilov Oracle Developer/DBA, ru@sunbay.com Sunbay Software AG, ru@FreeBSD.org FreeBSD committer, +380.652.512.251 Simferopol, Ukraine http://www.FreeBSD.org The Power To Serve http://www.oracle.com Enabling The Information Age To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message