Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)

2003-10-15 Thread Lowell Gilbert
Larry Rosenman [EMAIL PROTECTED] writes:

 I was trying(!) to help a friend out, and built a 4.8-REL box
 to play Router/NAT and it's ALMOST working.  I can't seem to telnet/surf
 from NAT'd addresses, but PING works fine.

You can ping to the same addresses that you can't telnet to?
On inside machines?
___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)

2003-10-15 Thread Larry Rosenman


--On Wednesday, October 15, 2003 10:03:35 -0400 Lowell Gilbert 
[EMAIL PROTECTED] wrote:

Larry Rosenman [EMAIL PROTECTED] writes:

I was trying(!) to help a friend out, and built a 4.8-REL box
to play Router/NAT and it's ALMOST working.  I can't seem to telnet/surf
from NAT'd addresses, but PING works fine.
You can ping to the same addresses that you can't telnet to?
On inside machines?
yes.  I.E. from 192.168.30.53 I can ping 207.158.72.11, and telnet
to 207.158.72.11.  While that telnet is up, I can log on to the FreeBSD
box, see the translation in ipnat -l, telnet to 207.158.72.11, and see the
session in 207.158.72.11's netstat, but I can't do anything useful on the
session from the 192.168.30.53 box.
LER

___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to
[EMAIL PROTECTED]


--
Larry Rosenman http://www.lerctr.org/~ler
Phone: +1 972-414-9812 E-Mail: [EMAIL PROTECTED]
US Mail: 1905 Steamboat Springs Drive, Garland, TX 75044-6749


pgp0.pgp
Description: PGP signature


Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)

2003-10-15 Thread Luke Kearney

On Wed, 15 Oct 2003 09:09:26 -0500
Larry Rosenman [EMAIL PROTECTED] granted us these pearls of wisdom:

 
 
 --On Wednesday, October 15, 2003 10:03:35 -0400 Lowell Gilbert 
 [EMAIL PROTECTED] wrote:
 
  Larry Rosenman [EMAIL PROTECTED] writes:
 
  I was trying(!) to help a friend out, and built a 4.8-REL box
  to play Router/NAT and it's ALMOST working.  I can't seem to telnet/surf
  from NAT'd addresses, but PING works fine.
 
  You can ping to the same addresses that you can't telnet to?
  On inside machines?
 yes.  I.E. from 192.168.30.53 I can ping 207.158.72.11, and telnet
 to 207.158.72.11.  While that telnet is up, I can log on to the FreeBSD
 box, see the translation in ipnat -l, telnet to 207.158.72.11, and see the
 session in 207.158.72.11's netstat, but I can't do anything useful on the
 session from the 192.168.30.53 box.
 
 LER

G'Day,
What are the firewall rules like ? Has IPFilter been set to pass all ? 
( or ipfw in case your using that instead )? Do you get name resolution
if you query an external server via nslookup ? Just for kicks try
enabling ipfilter with a ruleset like "" pass in log from any to any ""

HTH 

LukeK

___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"