From owner-freebsd-questions@FreeBSD.ORG Sun Dec 28 08:26:15 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9B4C916A4CE for ; Sun, 28 Dec 2003 08:26:15 -0800 (PST) Received: from hotmail.com (bay99-f51.bay99.hotmail.com [65.54.175.51]) by mx1.FreeBSD.org (Postfix) with ESMTP id 49C5243D1D for ; Sun, 28 Dec 2003 08:25:47 -0800 (PST) (envelope-from the_brothel@hotmail.com) Received: from mail pickup service by hotmail.com with Microsoft SMTPSVC; Sun, 28 Dec 2003 08:25:47 -0800 Received: from 203.10.111.38 by by99fd.bay99.hotmail.msn.com with HTTP; Sun, 28 Dec 2003 16:25:47 GMT X-Originating-IP: [203.10.111.38] X-Originating-Email: [the_brothel@hotmail.com] X-Sender: the_brothel@hotmail.com From: "Drew Robertson" To: freebsd-questions@freebsd.org Date: Sun, 28 Dec 2003 16:25:47 +0000 Mime-Version: 1.0 Content-Type: text/plain; format=flowed Message-ID: X-OriginalArrivalTime: 28 Dec 2003 16:25:47.0424 (UTC) FILETIME=[3FE7AA00:01C3CD5F] Subject: Re: A Challenge... NAT for PPP dial in user X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 28 Dec 2003 16:26:15 -0000 That's for that, I've added an entry to my rc.conf - ppp_nat="NO". Hopefully that will stop ppp trying to use nat... Thanks, D >From: Lowell Gilbert >Reply-To: freebsd-questions@freebsd.org >To: freebsd-questions@freebsd.org >CC: "Drew Robertson" >Subject: Re: A Challenge... NAT for PPP dial in user >Date: 26 Dec 2003 09:45:52 -0500 > >"Drew Robertson" writes: > > > I've been playing around with this for a while. > > > > I have a FreeBSD 4.8 box set as a gateway on my home LAN. I have 1 pc > > downstairs, and a few dial up users... FreeBSD box has 2 network > > cards, 1 for internal, 1 for external internet using cable & 1 56k > > modem. > > > > Very simple problem... when a dial in user connects to the FreeBSD > > gateway/router using PPP, NAT stops working on the PC downstairs and > > won't work on the dial in PC either... > > > > I have complete LAN access (telnet, ssh, samba, ping etc) on both the > > dial in PC and the downstairs PC, but somewhere my config is > > preventing everyone from being able to access the internet at once. > > > > In rc.conf, I have my Gateway_enable=YES, defaultrouter=192.168.1.1, > > router_enable=yes, proxyarp_all=yes... > > > > PPP.conf is simple... > > > > enable pap > > enable passwdauth > > set ifaddr 192.168.1.1 192.168.1.100-192.168.1.199 255.255.255.0 > > add HISADDR 255.255.255.0 MYADDR > > accept dns > > set dns 203.2.75.132 > > enable proxy > > > > In natd.conf > > > > interface tl0 > > sameports yes > > dynamic yes > > > > I'm running a firewall, but it is open for the TUN0 interface... > > > > I also have a divert natd (8668) allow all from any to any out via tl0 > > > > All other PC's on the LAN are windows clients... the one downstairs I > > was able to just set a default gateway and it was up and running on > > the internet, unfortunately it isn't done like that on a dial in setup > > on windows... I can't use DHCP for the clients, as I'm not supposed > > to have internet sharing running... > > > > Do I need to have an add statement in the PPP.conf, or do i have to > > enable proxyall rather than enable proxy?? > > > > Worst thing about this is I can't find enough doco on it on the > > net... I'll write my own when I get it done... > >I think that natd(8) and the NAT from ppp(8) are stepping on each >other's toes. Try not enabling NAT in ppp(8) at all, and letting >natd(8) take care of it. It's the same outside interface, after all; >it should "just work". > >-- >Lowell Gilbert, embedded/networking software engineer, Boston area: > resume/CV at http://be-well.ilk.org:8088/~lowell/resume/ > username/password "public" _________________________________________________________________ Get less junk mail with ninemsn Premium. Click here http://ninemsn.com.au/premium/landing.asp