Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 7 Jan 2006 13:49:06 +0100
From:      Jeremie Le Hen <jeremie@le-hen.org>
To:        OxY <oxy@field.hu>
Cc:        freebsd-hackers@freebsd.org
Subject:   Re: [fbsd] ipfw+nat
Message-ID:  <20060107124906.GT90495@obiwan.tataz.chchile.org>
In-Reply-To: <000f01c60ad9$f7732fa0$0201a8c0@oxy>
References:  <000f01c60ad9$f7732fa0$0201a8c0@oxy>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi,

> i'd like to ask for your help, because i didn't find anything related about 
> this topic..
> i have a box, with public ip, which is connected to other clients through 
> openvpn (10.254.0.x)
> i'd like to connect to the openvpn client's port (for example ssh)
> through a public address  port (x.x.x.x 16354)
> 
> unfortunately i totally failed in this, can't even forward to my boxes 
> openvpn address..
> 
> tried this:
> $cmd 00701 fwd 10.254.0.1,22 tcp from any to x.x.x.x 16354
> 
> no result, connection refused..
> it works well with datapipe, however i don't want to set up dozens of 
> datapipes :)
> 
> natd is enabled, do i need it? or ipfw divert?
> i have the following related in kernel conf:
> 
> options         IPFIREWALL
> options         IPFIREWALL_VERBOSE
> options         IPFIREWALL_VERBOSE_LIMIT=5
> options         IPFIREWALL_DEFAULT_TO_ACCEPT
> options         IPFIREWALL_FORWARD

Please post this on -ipfw@ or -net@.  Thank you.

Regards,
-- 
Jeremie Le Hen
< jeremie at le-hen dot org >< ttz at chchile dot org >



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060107124906.GT90495>