Re: Problem with IPFilter/IPNAT

From: Alex de Kruijff (freebsd_at_akruijff.dds.nl)
Date: 07/30/05

  • Next message: Erik Nørgaard: "Re: scanimage -L doesn't work as normal user"
    Date: Sat, 30 Jul 2005 15:20:33 +0200
    To: Odhiambo Washington <wash@wananchi.com>, freebsd-questions@freebsd.org
    
    

    On Sat, Jul 30, 2005 at 01:41:52PM +0300, Odhiambo Washington wrote:
    > I am using IPFilter and IPNat on several FreeBSD boxes. They are mostly
    > configured the same.
    >
    > Each box has two interfaces, public and internal, and acts as a router
    > to the LAN which is 'behind' it. The LAN machines use the FreeBSD as the
    > gateway, as well as a DNS server. I run cache-only config.
    >
    > The problem I have is that when, for any reason, the public link goes
    > down, the machines on the LAN timeout when communicating.

    It sound like there tying to lookup hostnames via DNS or something like
    this.

    Are you able to ping them with there ip addresses?
    Are you able to ping them with there host names?

    -- 
    Alex
    Please copy the original recipients, otherwise I may not read your reply.
    Howto's based on my ppersonal use, including information about 
    setting up a firewall and creating traffic graphs with MRTG
    http://www.kruijff.org/alex/FreeBSD/
    _______________________________________________
    freebsd-questions@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"
    

  • Next message: Erik Nørgaard: "Re: scanimage -L doesn't work as normal user"

    Relevant Pages

    • Re: ICMP pinging.
      ... My problem is my LAN can not ping outside world. ... going paste my config here, so you guru's can take a look whats really ... access-list inbound permit icmp any any time-exceeded ...
      (comp.dcom.sys.cisco)
    • Re: Is rl broken?
      ... > NIC was properly configured but he could not ping it and I could not login. ... I got my NIC configured to use DHCP in my LAN here ... kernel config that an *identical* system on my LAN is using) and test out the ...
      (freebsd-current)
    • Re: ICMP pinging.
      ... My problem is my LAN can not ping outside world. ... going paste my config here, so you guru's can take a look whats really ... access-list inbound permit icmp any any time-exceeded ...
      (comp.dcom.sys.cisco)
    • Re: XP-Home Ed - Sharing & Security?
      ... home LAN are not just unresponsive to outside probes but are ... without password protection to anyone on the LAN - which is not a ... Terminates in a Westell WireSpeed DSL Modem w/Default config ... >Pro firewall set to highest internet zone level? ...
      (microsoft.public.windowsxp.security_admin)
    • Problem with IPFilter/IPNAT
      ... I am using IPFilter and IPNat on several FreeBSD boxes. ... The LAN machines use the FreeBSD as the ... I run cache-only config. ... rl1 is external interface. ...
      (freebsd-questions)