From owner-freebsd-stable@FreeBSD.ORG Sun Sep 16 23:17:50 2007 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id CA4AF16A419 for ; Sun, 16 Sep 2007 23:17:50 +0000 (UTC) (envelope-from mike@vintners.net) Received: from vinifera.vintners.net (vinifera.vintners.net [207.229.65.53]) by mx1.freebsd.org (Postfix) with ESMTP id B512A13C459 for ; Sun, 16 Sep 2007 23:17:50 +0000 (UTC) (envelope-from mike@vintners.net) Received: from brix.vintners.net (brix.vintners.net [209.162.136.18]) by vinifera.vintners.net (8.14.1/8.13.3) with ESMTP id l8GN2CrB064116 for ; Sun, 16 Sep 2007 16:02:12 -0700 (PDT) (envelope-from mike@vintners.net) Received: from [127.0.0.1] ([192.168.136.45]) by brix.vintners.net (8.13.1/8.13.1) with ESMTP id l8GN20t5012758 for ; Sun, 16 Sep 2007 16:02:02 -0700 (PDT) (envelope-from mike@vintners.net) Message-ID: <46EDB5C7.5030100@vintners.net> Date: Sun, 16 Sep 2007 16:01:27 -0700 From: Mike Lempriere User-Agent: Thunderbird 2.0.0.6 (Windows/20070728) MIME-Version: 1.0 To: freebsd-stable@freebsd.org Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Spam-Status: No, score=-100.0 required=6.0 tests=USER_IN_WHITELIST autolearn=failed version=3.0.2 X-Spam-Checker-Version: SpamAssassin 3.0.2 (2004-11-16) on vinifera.vintners.net Subject: config problem routing external IP in to local net X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 16 Sep 2007 23:17:50 -0000 Hi folks -- sorry if this is the wrong list -- please let me know the proper one if so... I have a DSL with 5 IP addresses. I have a FreeBSD machine set up as a gateway one of the IP addresses. I'm using NAT. I'm using 'ipfw'. The gateway provides DHCP to the internal network, which is a handful of WinXp boxes. This stuff is all working great. The problem is that I need one specific machine to appear on the Internet proper with a unique IP address. I've hunted around the web and spent a bunch of time messing with things, and have them sort of working. It appears that when the outside world asks for this machine, it gets there, yay! The trouble is that this machine cannot see it's own requests. DNS does not work. Traceroute works to my upstream gateway. Doing an 'sh rc.firewall OPEN' does not fix the problem, so I don't think it's firewall related. I worked from: http://people.freebsd.org/~nik/nag/book.html (chapter 11) I have a natd.conf with 'interface' and 'redirect_address' statements. I have the special IP address aliased to the main external IP address. Anyone able to help me out this? Thanks! -- Mike Lempriere- Home: mike@vintners.net Phone: 206-780-2146 Cellphone: 206-200-5902; text pager: mlemp@tmail.com