Re: natd -redirect_address

From: Steve Bertrand (iaccounts_at_ibctech.ca)
Date: 08/05/04

  • Next message: Livhu Tshisikule: "Setting up Olivetti Job-Jet M400 printer on FBSD 5.2.1"
    Date: Thu, 5 Aug 2004 10:56:07 -0400 (EDT)
    To: "Steve Bertrand" <iaccounts@ibctech.ca>
    
    

    >> Hello all,
    >>
    >> I am probably missing something really stupid but here it goes.
    >> I've
    >> read the man pages, the handbook and even googled the problem to no
    >> avail.
    >>
    >> I am trying to set up natd to redirect public ips to my private
    >> addresses.
    >>
    >> This is what I have set up in rc.conf
    >>
    >> defaultrouter="24.97.250.201"
    >> gateway_enable="YES"
    >> hostname="gir.visionpayments.net"
    >> ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
    >> ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
    >> linux_enable="YES"
    >> sshd_enable="YES"
    >> usbd_enable="YES"
    >> firewall_enabled="YES"
    >> firewall_type="OPEN"
    >> natd_enabled="YES"
    >> natd_interface="xl0"
    >> natd_flags="-f /etc/natd.conf"
    >>
    >> This is what I have in natd.conf
    >>
    >> redirect_address 192.168.0.10 24.97.250.203
    >>
    >>>From what I read in the man pages and handbook this should be all I
    >>> need, however, I cannot even ping 24.97.250.203. So I typed in
    >>
    >> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
    >>
    >> and got
    >>
    >> natd: aliasing address not given
    >>
    >> So I added
    >>
    >> ifconfig_xl0_alias0 "inet 24.97.250.203"
    >>
    >> to rc.conf and now I am able to ping that public addy but it is
    >> doesn't seem to be redirecting me to 192.168.0.10. So I typed in
    >> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
    >> again to see what was happens and got

    >> natd: aliasing address not given

    Oh, and to further... when using -redirect_address as above, you must
    supply the -i (-interface) or an -alias_address statement. Try this:

    # natd -i rl0 -redirect_address 192.168.0.10 0.0.0.0

    or this:

    # natd -a 24.97.250.203 -redirect_address 192.168.0.10 0.0.0.0

    Cheers,

    Steve

    >> again. am I just being a dumb n00b? wtf am I doing wrong?
    >>
    >
    > First off, have you confirmed natd to be functional? Can the internal
    > machines get out to the net?
    >
    > At what point of your firewall ruleset are you diverting to natd?
    >
    > Have you tried this:
    >
    > redirect_address 192.168.0.10 0.0.0.0
    >
    > to see if incoming traffic destined to any public IP gets redirected?
    >
    > Steve
    >
    >>
    >>
    >>
    >>
    >> ---------------------------------
    >> Do you Yahoo!?
    >> New and Improved Yahoo! Mail - 100MB free storage!
    >> _______________________________________________
    >> freebsd-questions@freebsd.org mailing list
    >> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    >> To unsubscribe, send any mail to
    >> "freebsd-questions-unsubscribe@freebsd.org"
    >>
    >
    >
    > _______________________________________________
    > freebsd-questions@freebsd.org mailing list
    > http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    > To unsubscribe, send any mail to
    > "freebsd-questions-unsubscribe@freebsd.org"
    >

    _______________________________________________
    freebsd-questions@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"


  • Next message: Livhu Tshisikule: "Setting up Olivetti Job-Jet M400 printer on FBSD 5.2.1"

    Relevant Pages

    • Re: natd -redirect_address
      ... > I am trying to set up natd to redirect public ips to my private ... >>From what I read in the man pages and handbook this should be all I ... To unsubscribe, ...
      (freebsd-questions)
    • Re: ipfw2 & natd & stateful
      ... On Mon, 19 May 2003, Craig Reyenga wrote: ... >> but I can't seem to get the ruleset to work. ... >> It seems that NATD is stopping anyone on my internal network from getting ... To unsubscribe, ...
      (freebsd-questions)
    • [Fwd: Re: natd -redirect_address]
      ... I found that for some reason natd was not loading ... ipfw add divert natd all from any to any via xl0 ... >> Do you Yahoo!? ... >> To unsubscribe, send any mail to ...
      (freebsd-questions)
    • RE: ipfw + squid
      ... transparent caching with Freebsd. ... You don't do it with an IPFW rule, you need to pass instructions to ... Also read the man page on natd for more details. ... To unsubscribe, ...
      (freebsd-questions)
    • RE: make "make" quieter?
      ... far too late, must sleep) ... > Actually the redirect works well, esp. ... To unsubscribe, ...
      (freebsd-questions)