Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)
Larry Rosenman [EMAIL PROTECTED] writes: I was trying(!) to help a friend out, and built a 4.8-REL box to play Router/NAT and it's ALMOST working. I can't seem to telnet/surf from NAT'd addresses, but PING works fine. You can ping to the same addresses that you can't telnet to? On inside machines? ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to [EMAIL PROTECTED]
Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)
--On Wednesday, October 15, 2003 10:03:35 -0400 Lowell Gilbert [EMAIL PROTECTED] wrote: Larry Rosenman [EMAIL PROTECTED] writes: I was trying(!) to help a friend out, and built a 4.8-REL box to play Router/NAT and it's ALMOST working. I can't seem to telnet/surf from NAT'd addresses, but PING works fine. You can ping to the same addresses that you can't telnet to? On inside machines? yes. I.E. from 192.168.30.53 I can ping 207.158.72.11, and telnet to 207.158.72.11. While that telnet is up, I can log on to the FreeBSD box, see the translation in ipnat -l, telnet to 207.158.72.11, and see the session in 207.158.72.11's netstat, but I can't do anything useful on the session from the 192.168.30.53 box. LER ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to [EMAIL PROTECTED] -- Larry Rosenman http://www.lerctr.org/~ler Phone: +1 972-414-9812 E-Mail: [EMAIL PROTECTED] US Mail: 1905 Steamboat Springs Drive, Garland, TX 75044-6749 pgp0.pgp Description: PGP signature
Re: IPNAT/Slow TCP/Pings fine/4.8-REL (fwd)
On Wed, 15 Oct 2003 09:09:26 -0500 Larry Rosenman [EMAIL PROTECTED] granted us these pearls of wisdom: --On Wednesday, October 15, 2003 10:03:35 -0400 Lowell Gilbert [EMAIL PROTECTED] wrote: Larry Rosenman [EMAIL PROTECTED] writes: I was trying(!) to help a friend out, and built a 4.8-REL box to play Router/NAT and it's ALMOST working. I can't seem to telnet/surf from NAT'd addresses, but PING works fine. You can ping to the same addresses that you can't telnet to? On inside machines? yes. I.E. from 192.168.30.53 I can ping 207.158.72.11, and telnet to 207.158.72.11. While that telnet is up, I can log on to the FreeBSD box, see the translation in ipnat -l, telnet to 207.158.72.11, and see the session in 207.158.72.11's netstat, but I can't do anything useful on the session from the 192.168.30.53 box. LER G'Day, What are the firewall rules like ? Has IPFilter been set to pass all ? ( or ipfw in case your using that instead )? Do you get name resolution if you query an external server via nslookup ? Just for kicks try enabling ipfilter with a ruleset like "" pass in log from any to any "" HTH LukeK ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"