Date: Mon, 15 May 2000 15:03:40 -0400 From: "Geoff Mottram" <minaret@sprynet.com> To: <freebsd-questions@freebsd.org> Subject: NAT and secure http (https) Message-ID: <004e01bfbea0$4c12ab80$0301a8c0@minaret>
next in thread | raw e-mail | index | archive | help
I have recently installed FreeBSD 4.0 on a dedicated gateway machine with
two network interface cards and I am using the PPP client to make a PPPoE
connection over a DSL line. I have IP forwarding enabled, have turned on
network address translation (NAT) and set up some ip forwarding rules in
ppp.conf.
Everything is working really well except for secure http connections. Even
with all IP forwarding rules turned off (allow all traffic), I have had only
occasional luck getting a https connection to work properly between MSIE 5.0
or Netscape 4.6, and servers on the Internet. I have used tcpdump to
monitor the connection and either the client (the browser) or the server
stops the conversation very early on. I am guessing the forwarding or
address translation is being detected by one end or the other and is being
treated as a security breach.
I have searched high and low on both the FreeBSD site and the Internet but I
can't find an answer to the following questions:
Is there a problem using NAT with https?
Do I need to set up a proxy server in order to handle this type of
traffic?
Thanks in advance for any assistance you can provide.
Geoff Mottram
minaret@sprynet.com
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?004e01bfbea0$4c12ab80$0301a8c0>
