From owner-freebsd-isp Wed Aug 8 8:38:10 2001 Delivered-To: freebsd-isp@freebsd.org Received: from [192.168.0.20] (unknown [63.218.21.114]) by hub.freebsd.org (Postfix) with SMTP id E224037B401 for ; Wed, 8 Aug 2001 08:38:07 -0700 (PDT) (envelope-from frank@ihws.com) Received: from 192.168.0.102 by 192.168.0.20; Wed, 8 Aug 2001 11:38:05 -0400 User-Agent: Microsoft-Outlook-Express-Macintosh-Edition/5.02.2022 Date: Wed, 08 Aug 2001 11:38:05 -0400 Subject: Router w/o natd From: Frank Laszlo To: Message-ID: Mime-version: 1.0 Content-type: text/plain; charset="US-ASCII" Content-transfer-encoding: 7bit Sender: owner-freebsd-isp@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org I have an ISP-type setup with a webserver behind a firewall. The firewall is running ipfw and natd. I only have 2 IP addresses I can use.(IP1 and IP2) Right now, when someone hits a website on IP1 it uses a port_redirect to redirect to the internal IP address on my webserver (192.168.0.20) But the problem is when someone hits a website it shows the IP address of the firewall's internal NIC in the log files. This is not good for statistical and security purposes. how can I get rid of natd but still have all my internal workstations have inet access, and still route specific ports to my web/mail/ftp servers. Thanks in advance.. Frank Laszlo, DAS Image House Studios 317 N. Pontiac Trail Walled Lake, MI 48390 Phone: 248.926.9019 Fax: 248.926.9018 Email: frank@ihws.com WWW: http://www.ihws.com/ To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-isp" in the body of the message