Date: Fri, 21 Jul 2000 13:53:52 -0400 From: Nick Evans <nevans@nextvenue.com> To: 'Fernando Schapachnik' <fpscha@via-net-works.net.ar>, freebsd-security@freebsd.org Subject: RE: IP Filter problem. Message-ID: <712384017032D411AD7B0001023D799B07CA2A@sn1exchmbx.nextvenue.com>
next in thread | raw e-mail | index | archive | help
This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible. ------_=_NextPart_001_01BFF33C.A1E15630 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable I think there was a bug with 3.4.6 that didn't allow multiple rdr's to = one internal IP. Check the IPFilter mailing list archives for that: http://coombs.anu.edu.au/~avalon -----Original Message----- From: Fernando Schapachnik [mailto:fpscha@ns1.via-net-works.net.ar] Sent: Friday, July 21, 2000 10:41 AM To: freebsd-security@freebsd.org Subject: IP Filter problem. Hello: I'm running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE. My ipnat config. looks like: rdr ed1 ext_ip/32 port 80 -> int_ip port 80 tcp rdr ed1 ext_ip/32 port 25 -> int_ip port 25 tcp rdr ed1 ext_ip/32 port 110 -> int_ip port 110 tcp When adding the last rule, ipnat complains with: ioctl(SIOCADNAT): File exists ipnat -l consistently shows only the first 2 rules. Any ideas? Thanks! Fernando P. Schapachnik Administraci=F3n de la red VIA NET.WORKS ARGENTINA S.A. fernando@via-net-works.net.ar (54-11) 4323-3333 To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message ------_=_NextPart_001_01BFF33C.A1E15630 Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN"> <HTML> <HEAD> <META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; = charset=3Diso-8859-1"> <META NAME=3D"Generator" CONTENT=3D"MS Exchange Server version = 5.5.2652.35"> <TITLE>RE: IP Filter problem.</TITLE> </HEAD> <BODY> <P><FONT SIZE=3D2>I think there was a bug with 3.4.6 that didn't allow = multiple rdr's to one internal IP. Check the IPFilter mailing list = archives for that: <A HREF=3D"http://coombs.anu.edu.au/~avalon" = TARGET=3D"_blank">http://coombs.anu.edu.au/~avalon</A></FONT></P> <P><FONT SIZE=3D2>-----Original Message-----</FONT> <BR><FONT SIZE=3D2>From: Fernando Schapachnik [<A = HREF=3D"mailto:fpscha@ns1.via-net-works.net.ar">mailto:fpscha@ns1.via-ne= t-works.net.ar</A>]</FONT> <BR><FONT SIZE=3D2>Sent: Friday, July 21, 2000 10:41 AM</FONT> <BR><FONT SIZE=3D2>To: freebsd-security@freebsd.org</FONT> <BR><FONT SIZE=3D2>Subject: IP Filter problem.</FONT> </P> <BR> <P><FONT SIZE=3D2>Hello:</FONT> <BR> <FONT SIZE=3D2>I'm = running IP Filter 3.4.6 on FreeBSD 3.4-RELEASE.</FONT> </P> <P> <FONT SIZE=3D2>My ipnat = config. looks like:</FONT> </P> <P><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 80 -> int_ip port 80 = tcp</FONT> <BR><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 25 -> int_ip port 25 = tcp</FONT> <BR><FONT SIZE=3D2>rdr ed1 ext_ip/32 port 110 -> int_ip port 110 = tcp</FONT> </P> <P> <FONT SIZE=3D2>When = adding the last rule, ipnat complains with:</FONT> <BR><FONT SIZE=3D2>ioctl(SIOCADNAT): File exists</FONT> </P> <P> <FONT SIZE=3D2>ipnat -l = consistently shows only the first 2 rules.</FONT> </P> <P> <FONT SIZE=3D2>Any = ideas?</FONT> </P> <P> <FONT = SIZE=3D2>Thanks!</FONT> </P> <P><FONT SIZE=3D2>Fernando P. Schapachnik</FONT> <BR><FONT SIZE=3D2>Administraci=F3n de la red</FONT> <BR><FONT SIZE=3D2>VIA NET.WORKS ARGENTINA S.A.</FONT> <BR><FONT SIZE=3D2>fernando@via-net-works.net.ar</FONT> <BR><FONT SIZE=3D2>(54-11) 4323-3333</FONT> </P> <BR> <P><FONT SIZE=3D2>To Unsubscribe: send mail to = majordomo@FreeBSD.org</FONT> <BR><FONT SIZE=3D2>with "unsubscribe freebsd-security" in the = body of the message</FONT> </P> </BODY> </HTML> ------_=_NextPart_001_01BFF33C.A1E15630-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?712384017032D411AD7B0001023D799B07CA2A>