Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 15 Dec 2000 21:13:04 +0100
From:      Matthias Heidbrink <mh@cs.tu-berlin.de>
To:        freebsd-isdn@freebsd.org
Subject:   Firewall Problem with i4b 0.90.1 / FreeBSD 4.0 - Sample configuration?
Message-ID:  <20001215211303.C25371@nicky.cs.tu-berlin.de>

next in thread | raw e-mail | index | archive | help
Hi,

I've got problems with getting  my i4b working together with a firewall, dynamical 
IP addresses and NAT (Network Address Translation, "IP Masquerading"). 
If this sounds well-known to some of you: I asked for help about it half a year 
ago, but was not able to find a solution and gave up that time. 

Setup:
- i4b 0.90.1, Teles S016.3 card
- sppp via kernel ppp
- Internet provider with dynamical IP addresses
- The FreeBSD 4.0 "standard" firewall 
- FreeBSD natd
- Firewall configuration "simple" from the default "/etc/rc.firewall"

The problem seems to have to do with the combination of dynamical IP addresses and NAT.
OK, probably it's not exactly i4b-specific, but I hope to find someone here who knows how
to handle this problem or has a working sample configuration.

When I start natd in verbose mode and start lynx (Ports 53 and 80 should be allowed), 
I get the following error message:
--------
Out [UDP]  [UDP] 0.0.0.0:1518 -> 195.88.140.15:53 aliased to  
           [UDP] 0.0.0.0:1518 -> 195.88.140.15:53             
natd: failed to write packet back: Permission denied          
-------

When I switch the firewall off leaving NAT running, everything seems to work like 
expected. 

Does someone of you have a similiar combination working and would send me a working 
example setup (rc.firewall, isdnd.rc and the sppp setup schript)?

Ciao, Matthias
-- 
Matthias Heidbrink     E-Mail: 
Bundesratufer 12       Matthias_Heidbrink@b.maus.de  
10555 Berlin, Germany  mh@cs.tu-berlin.de         
Tel. +49-30-8536361    Mobil +49-179-3981150


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isdn" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001215211303.C25371>