From owner-freebsd-questions Wed Mar 27 22:14: 1 2002 Delivered-To: freebsd-questions@freebsd.org Received: from mail12.speakeasy.net (mail12.speakeasy.net [216.254.0.212]) by hub.freebsd.org (Postfix) with ESMTP id 66E7737B419 for ; Wed, 27 Mar 2002 22:13:56 -0800 (PST) Received: (qmail 7879 invoked from network); 28 Mar 2002 06:13:55 -0000 Received: from unknown (HELO localhost) ([66.92.14.213]) (envelope-sender ) by mail12.speakeasy.net (qmail-ldap-1.03) with DES-CBC3-SHA encrypted SMTP for ; 28 Mar 2002 06:13:55 -0000 Date: Wed, 27 Mar 2002 22:13:53 -0800 Mime-Version: 1.0 (Apple Message framework v481) Content-Type: text/plain; charset=US-ASCII; format=flowed Subject: Divert internal traffic to proxy? From: Ron Thompson To: questions@freebsd.org Content-Transfer-Encoding: 7bit Message-Id: X-Mailer: Apple Mail (2.481) Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG I've been working on a problem here for a while, and have decided to seek advice. Is it possible to use natd to divert my internal web traffic to another internal machine's proxy port? The problem that arises is that if I divert everything destined for port 80 and 8080 on my 10.0.0.1 machine to the 10.0.0.2 machine, then the 10.0.0.2 machine has no way of getting out. I've thought about putting another IF on the 10.0.0.2 machine and hooking it up to the DMZ, and that should work, but if there's a way to do it without that I'd love it. Any ideas? Is there a way to do redirect_port with an exception? (I didn't see any in the docs) -Ron Ron Thompson UNIX Systems Administrator Connectix Corp. (x242) To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message