Re: Problem with ipfw nat and packet to local services

2010-07-19 Thread Ian Smith
On Mon, 19 Jul 2010, Mamontov Roman wrote: Hello, Ian. UDP port 33564 on this box (xxx.xxx.xxx.xxx) is not redirected to any other address:port, and you have specified deny_in (-deny_incoming in natd-speak) so, well, you got what you asked for .. See the description under

Current problem reports assigned to freebsd-ipfw@FreeBSD.org

2010-07-19 Thread FreeBSD bugmaster
Note: to view an individual PR, use: http://www.freebsd.org/cgi/query-pr.cgi?pr=(number). The following is a listing of current problems submitted by FreeBSD users. These represent problem reports covering all versions including experimental development code and obsolete releases. S Tracker

Re: Problem with ipfw nat and packet to local services

2010-07-19 Thread Ian Smith
On Mon, 19 Jul 2010, Mamontov Roman wrote: What's the value of sysctl net.inet.ip.fw.one_pass ? It needs to be 0 so that packets will re-enter the firewall after NAT processing. Otherwise, it might help to a) run 'ipfw zero' before any tests .. I'm wondering about all those