Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 21 Jul 2000 13:53:52 -0400
From:      Nick Evans <nevans@nextvenue.com>
To:        'Fernando Schapachnik' <fpscha@via-net-works.net.ar>, freebsd-security@freebsd.org
Subject:   RE: IP Filter problem.
Message-ID:  <712384017032D411AD7B0001023D799B07CA2A@sn1exchmbx.nextvenue.com>

next in thread | raw e-mail | index | archive | help
This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.

------_=_NextPart_001_01BFF33C.A1E15630
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

I think there was a bug with 3.4.6 that didn't allow multiple rdr's to =
one
internal IP. Check the IPFilter mailing list archives for that:
http://coombs.anu.edu.au/~avalon

-----Original Message-----
From: Fernando Schapachnik [mailto:fpscha@ns1.via-net-works.net.ar]
Sent: Friday, July 21, 2000 10:41 AM
To: freebsd-security@freebsd.org
Subject: IP Filter problem.


Hello:
	I'm running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE.

	My ipnat config. looks like:

rdr ed1 ext_ip/32 port 80 -> int_ip port 80 tcp
rdr ed1 ext_ip/32 port 25 -> int_ip port 25 tcp
rdr ed1 ext_ip/32 port 110 -> int_ip port 110 tcp

	When adding the last rule, ipnat complains with:
ioctl(SIOCADNAT): File exists

	ipnat -l consistently shows only the first 2 rules.

	Any ideas?

	Thanks!

Fernando P. Schapachnik
Administraci=F3n de la red
VIA NET.WORKS ARGENTINA S.A.
fernando@via-net-works.net.ar
(54-11) 4323-3333


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message

------_=_NextPart_001_01BFF33C.A1E15630
Content-Type: text/html;
	charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; =
charset=3Diso-8859-1">
<META NAME=3D"Generator" CONTENT=3D"MS Exchange Server version =
5.5.2652.35">
<TITLE>RE: IP Filter problem.</TITLE>
</HEAD>
<BODY>

<P><FONT SIZE=3D2>I think there was a bug with 3.4.6 that didn't allow =
multiple rdr's to one internal IP. Check the IPFilter mailing list =
archives for that: <A HREF=3D"http://coombs.anu.edu.au/~avalon" =
TARGET=3D"_blank">http://coombs.anu.edu.au/~avalon</A></FONT></P>;

<P><FONT SIZE=3D2>-----Original Message-----</FONT>
<BR><FONT SIZE=3D2>From: Fernando Schapachnik [<A =
HREF=3D"mailto:fpscha@ns1.via-net-works.net.ar">mailto:fpscha@ns1.via-ne=
t-works.net.ar</A>]</FONT>
<BR><FONT SIZE=3D2>Sent: Friday, July 21, 2000 10:41 AM</FONT>
<BR><FONT SIZE=3D2>To: freebsd-security@freebsd.org</FONT>
<BR><FONT SIZE=3D2>Subject: IP Filter problem.</FONT>
</P>
<BR>

<P><FONT SIZE=3D2>Hello:</FONT>
<BR>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=3D2>I'm =
running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE.</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=3D2>My ipnat =
config. looks like:</FONT>
</P>

<P><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 80 -&gt; int_ip port 80 =
tcp</FONT>
<BR><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 25 -&gt; int_ip port 25 =
tcp</FONT>
<BR><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 110 -&gt; int_ip port 110 =
tcp</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=3D2>When =
adding the last rule, ipnat complains with:</FONT>
<BR><FONT SIZE=3D2>ioctl(SIOCADNAT): File exists</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=3D2>ipnat -l =
consistently shows only the first 2 rules.</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT SIZE=3D2>Any =
ideas?</FONT>
</P>

<P>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT =
SIZE=3D2>Thanks!</FONT>
</P>

<P><FONT SIZE=3D2>Fernando P. Schapachnik</FONT>
<BR><FONT SIZE=3D2>Administraci=F3n de la red</FONT>
<BR><FONT SIZE=3D2>VIA NET.WORKS ARGENTINA S.A.</FONT>
<BR><FONT SIZE=3D2>fernando@via-net-works.net.ar</FONT>
<BR><FONT SIZE=3D2>(54-11) 4323-3333</FONT>
</P>
<BR>

<P><FONT SIZE=3D2>To Unsubscribe: send mail to =
majordomo@FreeBSD.org</FONT>
<BR><FONT SIZE=3D2>with &quot;unsubscribe freebsd-security&quot; in the =
body of the message</FONT>
</P>

</BODY>
</HTML>
------_=_NextPart_001_01BFF33C.A1E15630--


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?712384017032D411AD7B0001023D799B07CA2A>