On Tue, 22 Mar 2005 09:45:05 -0500 Xiaodan Tang <[EMAIL PROTECTED]> wrote: > > I believe it is the "external_arp" option (of > npm-tcpip.so) you might want > to try. > You also need to enable "forward" (or "fastforward" on > npm-tcpip.so) > > -Xiaodan Tang
I have no success at all. Activating external_arp has the result that ifconfig, ping, netstat hangs after nfm-ipfilter was mounted. It also has the effect that nothing gets in or out even if the rules are: pass in all pass out all To recap, this what I do: io-net -dspeedo -ptcpip external-arp,fastforward ifconfig en0 10.0.0.9/8 mount -T io-net -o file=/etc/ipf.conf /lib/dll/nfm-ipfilter.so inetd I run inetd to verify if a telnet or ftp session can be established My current rules are pass in all pass out all I expect ipfstat to show some traffic. This is unfortunately not the case. Francois ______________________________________________________________ http://www.webmail.co.za the South African FREE email service
