Re: Please help with NAT

2006-10-20 Thread Erik Wikström
On 2006-10-20 00:39, Bill Hacker wrote: Side issue, but does pf [now | yet| always] have a 'dummynet' style tool for rate-limiting and testing? Never used dummynet myself but I seem to recall that ALTQ does not provide the same functionality as dummynet. As I understand ALTQ can be used to

Re: Please help with NAT

2006-10-20 Thread Eugene
Sorry for the stupid question, but I can't get NAT working properly on my machine. Generally speaking, I cannot reach internet from LAN machines, while natd is running and packets are being forwarded to the 'external' interface. Please tell me, if there is a problem with natd configuration or I

Please help with NAT

2006-10-19 Thread Eugene
Sorry for the stupid question, but I can't get NAT working properly on my machine. Generally speaking, I cannot reach internet from LAN machines, while natd is running and packets are being forwarded to the 'external' interface. Please tell me, if there is a problem with natd configuration or I

Re: Please help with NAT

2006-10-19 Thread Gergo Szakal
Eugene wrote: Sorry for the stupid question, but I can't get NAT working properly on my machine. Generally speaking, I cannot reach internet from LAN machines, while natd is running and packets are being forwarded to the 'external' interface. Please tell me, if there is a problem with natd

Re: Please help with NAT

2006-10-19 Thread JB
In [EMAIL PROTECTED], Eugene [EMAIL PROTECTED] shouted to everyone in earshot, /etc/natd.conf log yes log_denied yes interface rl0 redirect_address 193.138.X.Z 0.0.0.0 I'm not an ipfw user, but I quick scan of the natd man page makes me think that redirect_address isn't something you want there,

Re: Please help with NAT

2006-10-19 Thread Justin C. Sherrill
On Thu, October 19, 2006 10:57 am, Eugene wrote: Sorry for the stupid question, but I can't get NAT working properly on my machine. Generally speaking, I cannot reach internet from LAN machines, while natd is running and packets are being forwarded to the 'external' interface. Hmm... I have:

Re: Please help with NAT

2006-10-19 Thread Bill Hacker
Gergo Szakal wrote: Damn, sent too soon. :-) So it has altq. other undocumented feature is filtering by uid/gid (many people don't know about this hence they don't switch to pf from ipfw). That sounds good until I recall writing high-speed driver code (machine, asm, Forth) and shudder to