Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 21 Jul 2000 13:53:52 -0400
From:      Nick Evans <nevans@nextvenue.com>
To:        'Fernando Schapachnik' <fpscha@via-net-works.net.ar>, freebsd-security@freebsd.org
Subject:   RE: IP Filter problem.
Message-ID:  <712384017032D411AD7B0001023D799B07CA2A@sn1exchmbx.nextvenue.com>

index | next in thread | raw e-mail

[-- Attachment #1 --]
I think there was a bug with 3.4.6 that didn't allow multiple rdr's to one
internal IP. Check the IPFilter mailing list archives for that:
http://coombs.anu.edu.au/~avalon

-----Original Message-----
From: Fernando Schapachnik [mailto:fpscha@ns1.via-net-works.net.ar]
Sent: Friday, July 21, 2000 10:41 AM
To: freebsd-security@freebsd.org
Subject: IP Filter problem.


Hello:
	I'm running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE.

	My ipnat config. looks like:

rdr ed1 ext_ip/32 port 80 -> int_ip port 80 tcp
rdr ed1 ext_ip/32 port 25 -> int_ip port 25 tcp
rdr ed1 ext_ip/32 port 110 -> int_ip port 110 tcp

	When adding the last rule, ipnat complains with:
ioctl(SIOCADNAT): File exists

	ipnat -l consistently shows only the first 2 rules.

	Any ideas?

	Thanks!

Fernando P. Schapachnik
Administración de la red
VIA NET.WORKS ARGENTINA S.A.
fernando@via-net-works.net.ar
(54-11) 4323-3333


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message

[-- Attachment #2 --]
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=iso-8859-1">
<META NAME="Generator" CONTENT="MS Exchange Server version 5.5.2652.35">
<TITLE>RE: IP Filter problem.</TITLE>
</HEAD>
<BODY>

<P><FONT SIZE=2>I think there was a bug with 3.4.6 that didn't allow multiple rdr's to one internal IP. Check the IPFilter mailing list archives for that: <A HREF="http://coombs.anu.edu.au/~avalon" TARGET="_blank">http://coombs.anu.edu.au/~avalon</A></FONT></P>;

<P><FONT SIZE=2>-----Original Message-----</FONT>
<BR><FONT SIZE=2>From: Fernando Schapachnik [<A HREF="mailto:fpscha@ns1.via-net-works.net.ar">mailto:fpscha@ns1.via-net-works.net.ar</A>]</FONT>
<BR><FONT SIZE=2>Sent: Friday, July 21, 2000 10:41 AM</FONT>
<BR><FONT SIZE=2>To: freebsd-security@freebsd.org</FONT>
<BR><FONT SIZE=2>Subject: IP Filter problem.</FONT>
</P>
<BR>

<P><FONT SIZE=2>Hello:</FONT>
<BR>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>I'm running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE.</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>My ipnat config. looks like:</FONT>
</P>

<P><FONT SIZE=2>rdr ed1 ext_ip/32 port 80 -&gt; int_ip port 80 tcp</FONT>
<BR><FONT SIZE=2>rdr ed1 ext_ip/32 port 25 -&gt; int_ip port 25 tcp</FONT>
<BR><FONT SIZE=2>rdr ed1 ext_ip/32 port 110 -&gt; int_ip port 110 tcp</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>When adding the last rule, ipnat complains with:</FONT>
<BR><FONT SIZE=2>ioctl(SIOCADNAT): File exists</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>ipnat -l consistently shows only the first 2 rules.</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>Any ideas?</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=2>Thanks!</FONT>
</P>

<P><FONT SIZE=2>Fernando P. Schapachnik</FONT>
<BR><FONT SIZE=2>Administración de la red</FONT>
<BR><FONT SIZE=2>VIA NET.WORKS ARGENTINA S.A.</FONT>
<BR><FONT SIZE=2>fernando@via-net-works.net.ar</FONT>
<BR><FONT SIZE=2>(54-11) 4323-3333</FONT>
</P>
<BR>

<P><FONT SIZE=2>To Unsubscribe: send mail to majordomo@FreeBSD.org</FONT>
<BR><FONT SIZE=2>with &quot;unsubscribe freebsd-security&quot; in the body of the message</FONT>
</P>

</BODY>
</HTML>
help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?712384017032D411AD7B0001023D799B07CA2A>