From owner-freebsd-current@FreeBSD.ORG Sat Feb 28 16:46:17 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C04D216A4CE; Sat, 28 Feb 2004 16:46:17 -0800 (PST) Received: from oahu.WURLDLINK.NET (oahu.wurldlink.net [66.193.144.7]) by mx1.FreeBSD.org (Postfix) with ESMTP id 74A0C43D2F; Sat, 28 Feb 2004 16:46:17 -0800 (PST) (envelope-from vince@oahu.WURLDLINK.NET) Received: from oahu.WURLDLINK.NET (vince@localhost.WURLDLINK.NET [127.0.0.1]) by oahu.WURLDLINK.NET (8.12.9/8.12.9) with ESMTP id i1T0jeqQ090032; Sat, 28 Feb 2004 14:45:40 -1000 (HST) Received: from localhost (vince@localhost)i1T0jd8q090029; Sat, 28 Feb 2004 14:45:39 -1000 (HST) Date: Sat, 28 Feb 2004 14:45:39 -1000 (HST) From: Vincent Poy To: Craig Rodrigues In-Reply-To: <20040229002147.GA1351@crodrigues.org> Message-ID: <20040228144145.Q8264-100000@oahu.WURLDLINK.NET> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII cc: alc@freebsd.org cc: Robert Watson cc: current@freebsd.org cc: Kris Kennaway Subject: Re: HEADSUP: Sleep queues added to kernel, so be careful. X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 29 Feb 2004 00:46:17 -0000 On Sat, 28 Feb 2004, Craig Rodrigues wrote: > Hi, > > I just cvsup'd my box, and am having the same problem > as Vincent. > > I have these lines in my /etc/rc.conf: > > firewall_type="open" > natd_enable="YES" > natd_interface="xl0" > natd_flags="-redirect_port tcp 192.168.0.2:80-9000 80-9000 -redirect_port tcp 19 > 2.168.0.3:80-9000 80-9000" > > > If I capture the boot output with: > vidcontrol -H -P > bootup.txt > > I see these lines: > > Flushed all rules. > 00050 divert 8668 ip from any to any via xl0 > 00100 allow ip from any to any via lo0 > 00200 deny ip from any to 127.0.0.0/8 > 00300 deny ip from 127.0.0.0/8 to any > 65000 allow ip from any to any > Firewall rules loaded, starting divert daemons: natd: Unable to bind divert socket.: Can't assign requested address > . > net.inet.ip.fw.enable: 1 -> 1 > > > > I added some additional statements to /etc/rc.d/ipfw so > that it prints out the natd command: > > Firewall rules loaded, starting divert daemons: natd: /sbin/natd -redirect_port tcp 192.168.0.2:80-9000 80-9000 -redirect_port tcp 192.168.0.3:80-9000 80-9000 -dynamic -n xl0 > natd: Unable to bind divert socket.: Can't assign requested address > . > net.inet.ip.fw.enable: 1 -> 1 > > > > After bootup, if I execute /sbin/natd from the command-line, > I do not get this error message. Thanks Craig, I just looked on the console and captured the output: Flushed all rules. 00050 divert 8668 ip from any to any via xl0 00100 allow ip from any to any via lo0 00200 deny ip from any to 127.0.0.0/8 00300 deny ip from 127.0.0.0/8 to any 65000 allow ip from any to any Firewall rules loaded, starting divert daemons: natd natd: Unable to bind divert socket.: Can't assign requested address. Firewall logging enabled net.inet.ip.fw.enable: 1 -> 1 I can't tell when this broke as I mentioned, the last -CURRENT buildworld I was running on was September 23, 2003 before going with this one at 4AM -800. Cheers, Vince - vince@WURLDLINK.NET - Vice President ________ __ ____ Unix Networking Operations - FreeBSD-Real Unix for Free / / / / | / |[__ ] WurldLink Corporation / / / / | / | __] ] San Francisco - Honolulu - Hong Kong / / / / / |/ / | __] ] HongKong Stars/Gravis UltraSound Mailing Lists Admin /_/_/_/_/|___/|_|[____] Almighty1@IRC - oahu.DAL.NET Hawaii's DALnet IRC Network Server Admin