Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 1 Apr 2003 15:06:54 +0200
From:      "John Meyer" <john@ast.com.na>
To:        <freebsd-questions@FreeBSD.ORG>
Subject:   Firewall
Message-ID:  <000a01c2f84f$923077f0$09cba8c0@Gunther1>

next in thread | raw e-mail | index | archive | help

Good Day.

I have a small problem compared to the problems listed here. I have Freebsd
v3.1 (fairly old). I have compiled the kernel with
options IPFIREWALL and
options IPDIVERT
options IPFIREWALL_VERBOSE

in my rc.conf file I have
gateway_enable="YES"
firewall_enable="YES"
firewall_type="/etc/firewall.ast"
natd_interface="vx0"
natd_flags=""

In the etc dir I have a file called firewall.ast.

My problem is I seem to get an error at bootup stating as if you are running
ipfw cmd without options. I have disabled all the rules in firewall.ast
except the first one.
add 00100 tcp from any to any

When I disable that as well all seems to work well. It looks like the option
in rc.conf firewall_type="/etc/firewall.ast" does not get interpreted
correctly.

2nd Problem is I need to divert my public ip port 80 to a private ip port 80
what are the steps in natd to follow without compromising my security on the
private side.

Thank you very much in advance for any assistance.

John Meyer
AST Namibia



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000a01c2f84f$923077f0$09cba8c0>