From owner-freebsd-questions@FreeBSD.ORG Sat Sep 11 16:26:28 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0830D16A4CE for ; Sat, 11 Sep 2004 16:26:28 +0000 (GMT) Received: from webmail.speakeasy.net (webmail3.speakeasy.net [216.254.0.83]) by mx1.FreeBSD.org (Postfix) with ESMTP id C5ABB43D2D for ; Sat, 11 Sep 2004 16:26:27 +0000 (GMT) (envelope-from cscott@speakeasy.net) Received: (qmail 25699 invoked from network); 11 Sep 2004 16:26:27 -0000 Received: from localhost (HELO webmail3) ([127.0.0.1]) (envelope-sender ) by localhost (qmail-ldap-1.03) with SMTP for ; 11 Sep 2004 16:26:27 -0000 Received: from 216.231.36.158 (unverified [216.231.36.158]) by webmail3 (VisualMail 4.0) with WEBMAIL id 11494; Sat, 11 Sep 2004 16:26:27 +0000 From: cscott@speakeasy.net To: "Denis Lemire" , freebsd-questions@freebsd.org Importance: Normal Sensitivity: Normal Message-ID: X-Mailer: Mintersoft VisualMail, Build 4.0.111601 X-Originating-IP: [216.231.36.158] Date: Sat, 11 Sep 2004 16:26:27 +0000 MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Subject: Re: NAT/DIVERT Issues in 5.2.1 Release X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 11 Sep 2004 16:26:28 -0000 What is your firewall running with/ Can you provide a paste of 'ipfw show'? Also, what is in your natd.conf? > -----Original Message----- > From: Denis Lemire [mailto:dlemire@gmail.com] > Sent: Saturday, September 11, 2004 02:57 AM > To: freebsd-questions@freebsd.org > Subject: NAT/DIVERT Issues in 5.2.1 Release > > I've just completed a frustrating day of attempting to get nat working > on 5.2.1 RELEASE. I've very familiar with using FreeBSD as a nat > enabled Internet gateway, I have set this up on many machines with > prior versions. > > I've compiled my kernel with the ip divert and firewall options > needed. I have enabled the firewall and natd in my rc.conf, and have > (for now) set firewall type to open and gateway_enable="yes". > > The setup simply won't work, the appropriate rules are in the > firewall, and the natd daemon is running. The main thing I find that > doesn't make sense is running "ipfw -a l" lists the divert rule but > its values are zeroed out such that it has been used. > > Is there an issue with nat on 5.2.1-RELEASE? I've even tried compiling > a kernel from cvsup (5.2.1-RELEASE-p9 I believe). > > Any suggestions on where I might have messed this up would be excellent. > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" >