Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 Sep 1999 17:35:00 +0200 (CEST)
From:      bsdseq@mail.ik.nu
To:        freebsd-security@freebsd.org
Subject:   Re: mapping ports from outside to inside (with ipfw ?)
Message-ID:  <199909161537.RAA02357@mag.ik.nu>
In-Reply-To: <Pine.BSF.4.05.9909161124410.13093-100000@bytor.rush.net> from Pat Lynch at "Sep 16, 99 11:28:06 am"

next in thread | previous in thread | raw e-mail | index | archive | help
Ok, but I understood he was trying to redirect ports from specific (alias-)
addresses to the inside. While this can be done with natd, I find it not
so convienient to put all those redirects in /etc/rc.conf. (Yes, they can also
be in a file, I know). The logging is quite nice too, though...

Ralphm


> I use natd, its no problem and relatively simple.
> 
> make sure you have IP_DIVERT in the kernel (to go along with all the
> firewall stuff.
> 
> then:
> 
> /sbin/natd -redirect_port tcp totem:113 113 -redirect_port tcp \
> different:80 80 -interface tun0
> /sbin/ipfw add divert 8668 ip from any to any via tun0
> 
> I'm redirecting the port 113 (ident) from the outside to my workstation
> (for irc actually) and port 80 to my sparc for web serving.
> 
> -Pat
> 
> ... snip ...



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199909161537.RAA02357>