Re: Large scale NAT

2007-05-11 Thread Erik Norgaard
On Fri, 11 May 2007, Todor Dragnev wrote: Hello list, I have about 4000 users behind NAT. I use ipnat(ipf) on single freebsd box( v6.2) to translate RFC1918 ip addresses to real one. All works fine, but my CPU usage is very high and router starts to drop packets and sometimes freeze. I fix fre

Large scale NAT

2007-05-11 Thread Todor Dragnev
Hello list, I have about 4000 users behind NAT. I use ipnat(ipf) on single freebsd box( v6.2) to translate RFC1918 ip addresses to real one. In ipnat.conf I have: --- map vlan0 10.X.0.0/16 -> a.b.c.X/32 proxy port ftp ftp/tcp map vlan0 10.X.0.0/16 -> a.b.c.X/32 portmap tcp/udp auto map vlan0 10.