natd + ipfw question

Leo Bicknell bicknell at ufp.org
Tue Dec 23 08:54:44 PST 2003


Can someone explain to me why:

ipfw add 1000 divert natd ip from any to any via fxp0

works, and yet:

ipfw add 1000 divert natd ip from any to any recv fxp0
ipfw add 1001 divert natd ip from any to any xmit fxp0

doesn't?  Yes, I want to do something fancier treating inbound and
outbound traffic differently, but this basic case doesn't seem to
work, and it seems to me like it should.  What am I missing?

-- 
       Leo Bicknell - bicknell at ufp.org - CCIE 3440
        PGP keys at http://www.ufp.org/~bicknell/
Read TMBG List - tmbg-list-request at tmbg.org, www.tmbg.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-hackers/attachments/20031223/66e57285/attachment.bin


More information about the freebsd-hackers mailing list