Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 10 Jul 2001 22:30:07 -0400 (EDT)
From:      Francisco Reyes <lists@natserv.com>
To:        FreeBSD Security List <freebsd-security@freebsd.org>
Subject:   Fixed Cant ping/nslookup. Natd rule not on top
Message-ID:  <20010710222632.H511-100000@zoraida.natserv.net>
In-Reply-To: <20010710211158.Q12950-100000@x1-6-00-50-ba-de-36-33.kico1.on.home.com>

next in thread | previous in thread | raw e-mail | index | archive | help
After a week of going crazy I found why I could not ping/nslookup from
internal machines. It had to do with the placement of the natd/divert
rule.

Isn't this rule supposed to be all the way on the top of the ruleset?
I started my firewall on this machine from a template rc.firewall and it
had the natd almost in the middle of the ruleset. After I moved it to the
top now all works as expected.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010710222632.H511-100000>