Re: Avoiding natd overhead



On Sat, Oct 21, 2006 at 03:54:06PM -0600 I heard the voice of
Brett Glass, and lo! it spake thus:

Also, more than once I've locked myself out of a machine when trying
to restart NAT with a different configuration;

The trick I've adopted for this is to have allow rules for port 22
both directions BEFORE the divert rule for natd. That way even if
it's down, I can still talk ssh.


--
Matthew Fuller (MF4839) | fullermd@xxxxxxxxxxxxxxx
Systems/Network Administrator | http://www.over-yonder.net/~fullermd/
On the Internet, nobody can hear you scream.
_______________________________________________
freebsd-net@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "freebsd-net-unsubscribe@xxxxxxxxxxx"