Hello
I upgraded my freebsd 8.0 box to 8.1 and now have a problem with IPFW kernel nat:
config of nat 1 is
sysctl -a|grep one_pass
rule body of natting:
In 8.0 release these rules work fine,
but in 8.1 all packets matched with rule 20700 not leave firewall
and continue move to rule 29900
Any idea?
Thanks a lot
I upgraded my freebsd 8.0 box to 8.1 and now have a problem with IPFW kernel nat:
config of nat 1 is
Code:
ipfw nat 1 config if fxp2 log deny_in same_ports reset
sysctl -a|grep one_pass
Code:
net.inet.ip.fw.one_pass: 1
rule body of natting:
Code:
...
20700 nat 1 ip from any to any via fxp2
29900 deny ip from any to any
In 8.0 release these rules work fine,
Code:
20700 12221 1314739 nat 1 ip from any to any via fxp2
29900 0 0 deny ip from any to any
and continue move to rule 29900
Code:
20700 0 5847 nat 1 ip from any to any via fxp2
29900 0 6023 deny ip from any to any
Any idea?
Thanks a lot