Re: natd inconsistencies

2000-07-10 Thread Doug White
On Mon, 10 Jul 2000, Colin wrote: > I found this rule was the problem using ipfw show (a very useful command > when you're building a ruleset to see what is blocking you) which is why I > moved it. My concern is that it shouldn't block packets from an external > source (eg www.FreeBSD.org ;

Re: natd inconsistencies

2000-07-10 Thread Colin
On 10-Jul-00 Doug White wrote: > On Sun, 9 Jul 2000, Colin wrote: > >> The man page recommends putting the divert rule as close to the >> beginning >> of the rule set as possible, and the default rule sets seem consistent >> with this. I noticed, though, that if I didn't put the rule

natd inconsistencies

2000-07-09 Thread Colin
I've just finished setting up FreeBSD 4.0R with ipfw and natd and I've noticed either a discrepency between the actual functionality and the man page or a misunderstanding on my part. The man page recommends putting the divert rule as close to the beginning of the rule set as possible, and th