On Tue, 22 Mar 2005 09:45:05 -0500
 Xiaodan Tang <[EMAIL PROTECTED]> wrote:
>  
> I believe it is the "external_arp" option (of
> npm-tcpip.so) you might want
> to try.
> You also need to enable "forward" (or "fastforward" on
> npm-tcpip.so)
> 
> -Xiaodan Tang

I have no success at all. Activating external_arp has the
result that ifconfig, ping, netstat hangs after
nfm-ipfilter was mounted.

It also has the effect that nothing gets in or out even if
the rules are:
pass in all
pass out all

To recap, this what I do:
io-net -dspeedo -ptcpip external-arp,fastforward
ifconfig en0 10.0.0.9/8
mount -T io-net -o file=/etc/ipf.conf
/lib/dll/nfm-ipfilter.so
inetd

I run inetd to verify if a telnet or ftp session can be
established

My current rules are
pass in all
pass out all

I expect ipfstat to show some traffic. This is
unfortunately not the case.

Francois
______________________________________________________________
http://www.webmail.co.za the South African FREE email service

Reply via email to