NAT (ipfw/natd) broken in latest -CURRENT
Paolo Pisati
p.pisati at oltrelinux.com
Wed Dec 17 09:55:46 UTC 2008
Joe Marcus Clarke wrote:
> I just upgraded my i386 -CURRENT box from November 14 to today, and now
> my SSH-over-PPP VPN tunnel no longer works. I did some packet captures,
> and it appears that NAT is no longer working. If I send a telnet packet
> from my client side over the PPP tunnel, I see the SYN go out on the
> server side network properly translated. The destination host ACKs
> correctly, but the ACK never goes back across the tunnel. It's as if
> natd is no longer translating the packet on the inbound path. Besides
> the upgrade, nothing has changed in my environment.
>
lately some work has been done on the vimage and routing tree stuff,
thus your best bet is to go back
some days and try again.
--
bye,
P.
More information about the freebsd-current
mailing list