FreeBSD 12.1, vnet jail, and internet access

JÁKÓ András jako.andras at eik.bme.hu
Sat Jun 27 21:37:32 UTC 2020


> I was under the impression that the two stacks were separate?

They are. But I don't think your ISP knows anything about your private
subnet, so they won't send IP packets with your private destination
address to you. And most probably they won't accept IP packets with your
private source address from you. So you have to translate these private
addresses if you want your ISP (and others) to forward them.

> Should I nat on the bridge or epair?

On the bridge, I guess.

András


More information about the freebsd-jail mailing list