Re: Kernel NAT issues

2015-10-12 Thread Nathan Aherne
Hi Ian, Thank you for your response. I didn’t post my ruleset because I should be able to fix the issue myself but I see now that my request to explain “how NAT works” was incorrect. I have now included my ruleset below (as well as my initial email). # Enable NAT ipfw nat 1 config ip $jip

Kernel NAT issues

2015-10-12 Thread Nathan Aherne
I sent through a question to this list a little while ago and have been trying to get IPFW NAT working since then. I have had some success but not the success I need, everything is working correctly except NAT rules for my particular use case. I have read every Google result on the first 50

Re: Kernel NAT issues

2015-10-12 Thread Nathan Aherne
To further illustrate my issue, this is a small log output. I am running “host google.com ” in the jail, which has the IP 10.0.0.1. The UNKNOWN line is logging on the check-state rule. I would expect the first piece of traffic out would be UNKNOWN (does not have an entry in

Re: Kernel NAT issues

2015-10-12 Thread Ian Smith
On Tue, 13 Oct 2015 12:33:52 +1000, Nathan Aherne wrote: > I sent through a question to this list a little while ago and have > been trying to get IPFW NAT working since then. I have had some > success but not the success I need, everything is working correctly > except NAT rules for my