Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 05 Mar 2001 13:52:16 -0800
From:      Carson Gaspar <carson@taltos.org>
Cc:        stable@FreeBSD.ORG
Subject:   Re: Did ipfw fwd just break?
Message-ID:  <45411812.983800336@[10.10.1.2]>
In-Reply-To: <20010304012338.A52971@pit.databus.com>
References:   <20010304012338.A52971@pit.databus.com>

next in thread | previous in thread | raw e-mail | index | archive | help


--On Sunday, March 04, 2001 1:23 AM -0500 Barney Wolff 
<barney@pit.databus.com> wrote:

> I question whether this complexity is necessary.  The effect of the
> tranparent proxying could just as well have been achieved by
> translating to an alias address that is assigned to the interface,
> rather than to localhost, right?  Simpler is better, in the kernel.

But that means that your proxy has to be bound to the interface address, 
and something could connect to it directly that didn't get redirected there 
by ipfw. Localhost is the right thing to do. (Of course, I use ipfilter... 
;-)

-- 
Carson



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?45411812.983800336>