> I am experimenting with IPFW firewalls and have hit a roadblock. I am > trying to allow ssh, mail, dns requests, pings and traceroutes out, but > not in and webmin (port 10000). I am hitting a roadblock on mail and > pings out. Hope someone can help me...I am new to this and donīt > understand firewall rules syntax fully. I have funded my own lab to > experiment with this fun and powerful stuff... >
Did you setup NAT and IPDIVERT in your kernel? http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/natd.html Even though you have 2 private networks, you still need to run NAT accross those subnets or add static routes to your DSL modem, otherwise any traffic coming back in from the DSL modem won't know where to go to find the fxp1 network. Check out the handbook, it should work for you. -- Henrik Hudson [EMAIL PROTECTED] You know, Hobbes, some days even my lucky rocket ship underpants don't help." Calvin To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-questions" in the body of the message