From owner-freebsd-users-jp@freebsd.org Mon Apr 5 21:04:54 2021 Return-Path: Delivered-To: freebsd-users-jp@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id CE5185C7122 for ; Mon, 5 Apr 2021 21:04:54 +0000 (UTC) (envelope-from take@kasaneiro.jp) Received: from wmx01.wadax.ne.jp (wmx01.wadax.ne.jp [211.1.224.229]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4FDjpY1fLLz3jkG for ; Mon, 5 Apr 2021 21:04:53 +0000 (UTC) (envelope-from take@kasaneiro.jp) Received: from wx06.wadax.ne.jp (wx06.wadax.ne.jp [202.189.178.66]) by wmx01.wadax.ne.jp (Postfix) with ESMTP id 050212204F4; Tue, 6 Apr 2021 06:04:48 +0900 (JST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=kasaneiro.jp; s=20201022; t=1617656688; bh=VzF5WCVhN3qyhnK4OarwFikmxAoricaAoI9Y+KEIdjE=; h=Date:To:Cc:Subject:From:In-Reply-To:References:From; b=wjEROsltxW24rTjCSSNpIx1++kyhzCZSeUtd5xTWC0BI8Hu4Dud7QsleshAFB/YV+ F9t7CCxmYgpv+z6bbyNU5Ao5dCCQClxc6m83N5J/7k0iVsoeXXJA+WMQK7TsDTDHT5 BKyEnwxvfjAEAKoAbQLlaPEyKN9hjbVlakeN16JE= Received: from localhost (144.231.214.202.rev.vmobile.jp [202.214.231.144]) by wx06.wadax.ne.jp (Postfix) with ESMTPA id AD36EC01A4; Tue, 6 Apr 2021 06:04:47 +0900 (JST) Date: Tue, 06 Apr 2021 06:04:39 +0900 (JST) Message-Id: <20210406.060439.139294620503090965.take@kasaneiro.jp> To: hiroo@oikumene.net Cc: freebsd-users-jp@freebsd.org From: WATANABE Takeo In-Reply-To: References: <053ea883-44d7-4902-842d-b532058b72e7@oikumene.net> <20210329.042329.1073458416831780696.take@kasaneiro.jp> X-Mailer: Mew version 6.8 on Emacs 28.0.50 Mime-Version: 1.0 Content-Type: Text/Plain; charset=iso-2022-jp Content-Transfer-Encoding: 7bit X-Rspamd-Queue-Id: 4FDjpY1fLLz3jkG X-Spamd-Bar: / Authentication-Results: mx1.freebsd.org; dkim=pass header.d=kasaneiro.jp header.s=20201022 header.b=wjEROslt; dmarc=none; spf=pass (mx1.freebsd.org: domain of take@kasaneiro.jp designates 211.1.224.229 as permitted sender) smtp.mailfrom=take@kasaneiro.jp X-Spamd-Result: default: False [0.00 / 15.00]; RCVD_VIA_SMTP_AUTH(0.00)[]; RBL_DBL_DONT_QUERY_IPS(0.00)[211.1.224.229:from]; R_DKIM_ALLOW(-0.20)[kasaneiro.jp:s=20201022]; ARC_NA(0.00)[]; FROM_HAS_DN(0.00)[]; MV_CASE(0.50)[]; R_SPF_ALLOW(-0.20)[+ip4:211.1.224.224/29]; MIME_GOOD(-0.10)[text/plain]; TO_DN_NONE(0.00)[]; DMARC_NA(0.00)[kasaneiro.jp]; NEURAL_SPAM_SHORT(1.00)[1.000]; SPAMHAUS_ZRD(0.00)[211.1.224.229:from:127.0.2.255]; RCVD_COUNT_THREE(0.00)[3]; TO_MATCH_ENVRCPT_SOME(0.00)[]; DKIM_TRACE(0.00)[kasaneiro.jp:+]; RCPT_COUNT_TWO(0.00)[2]; MID_CONTAINS_FROM(1.00)[]; RCVD_IN_DNSWL_NONE(0.00)[211.1.224.229:from]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; NEURAL_HAM_LONG(-1.00)[-1.000]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; RCVD_TLS_LAST(0.00)[]; ASN(0.00)[asn:7671, ipnet:211.1.224.0/20, country:JP]; MAILMAN_DEST(0.00)[freebsd-users-jp] Subject: [FreeBSD-users-jp 96757] Re: =?iso-2022-jp?b?GyRCIVYbKEJ2NhskQiVXJWklORsoQiAbJEI4R0RqGyhC?= =?iso-2022-jp?b?SVAbJEIlNSE8JVMlOSFXJEckThsoQklQSVAbJEIlSCVzJU0layROGyhC?= =?iso-2022-jp?b?GyRCQF9EaiROO0VKfRsoQg==?= X-BeenThere: freebsd-users-jp@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: Discussion relevant to FreeBSD communities in Japan List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 05 Apr 2021 21:04:54 -0000 渡部です。 on Sat, 03 Apr 2021 07:01:02 +0900 Hiroo Ono wrote: > 小野寛生です。 > > pf の設定についてですが、pf.conf(5) の TRANSLATION の項目を見ると > > nat A nat rule specifies that IP addresses are to be changed as the > packet traverses the given interface. > > とあります。 > 現在の設定では gif0 にルーティングしているので、通るインターフェースは > gif0 を指定しないといけないのではないでしょうか。 > > On 2021年3月29日月曜日 4時23分29秒 JST, WATANABE Takeo wrote: >> 渡部です。 > >> wan = "ixl0" >> lan = "ixl1" >> >> scrub inall >> >> # IPv4 NAT >> nat on $wan inet from 192.168.131.64/27 to any -> 106.185.148.119/32 > > nat on gif0 inet from 192.168.131.64/27 to any -> 106.185.148.119 > > lo0 ではなく gif0 に IPv4 アドレスを振ればインターフェースの指定でいけ > るのではないかと思います。 gif0 で nat するようにして,v4 アドレスを gif0 に割り当てたら,通りました。 教えてくださって,本当にありがとうございました。 --- WATANABE, Takeo take@kasaneiro.jp