OP
- Thread Starter
- #26
OK, spent the night and part of the morning reading documentation on PF and it's not quite as horrible as I first thought (so I must have missed something crucial).
So I think I will shift gears to FreeBSD/OpenVPN/NAT/PF.
I still have one unanswered question I sort of partially asked earlier. If I can get an answer then I think we can close this thread off, maybe not as solved but as hitting a brick wall.
In most of the discussions I see references to external and internal IPs and interfaces when doing the setup. The server I am working on is essentially a standalone machine with no intranet. I would assume that prior to the OpenVPN or NAT, it had for, all intents and purposes, no internal IP or interface or is in fact the lo0 considered the internal interface?
So I think I will shift gears to FreeBSD/OpenVPN/NAT/PF.
I still have one unanswered question I sort of partially asked earlier. If I can get an answer then I think we can close this thread off, maybe not as solved but as hitting a brick wall.
In most of the discussions I see references to external and internal IPs and interfaces when doing the setup. The server I am working on is essentially a standalone machine with no intranet. I would assume that prior to the OpenVPN or NAT, it had for, all intents and purposes, no internal IP or interface or is in fact the lo0 considered the internal interface?
ifconfig
results as follows:
Code:
re0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=389b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM,WOL_UCAST,WOL_MCAST,WOL_MAGIC>
ether 00:13:8f:e5:e4:15
inet 209.160.65.133 netmask 0xfffff800 broadcast 209.160.71.255
inet 209.160.68.112 netmask 0xffffffff broadcast 209.160.68.112
media: Ethernet autoselect (10baseT/UTP <full-duplex>)
status: active
rl0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=8<VLAN_MTU>
ether 00:18:e7:08:27:dd
inet 10.8.0.1 netmask 0xffffff00 broadcast 10.8.0.255
media: Ethernet autoselect (none)
status: no carrier
ipfw0: flags=8801<UP,SIMPLEX,MULTICAST> metric 0 mtu 65536
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
options=3<RXCSUM,TXCSUM>
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x4
inet6 ::1 prefixlen 128
inet 127.0.0.1 netmask 0xff000000
nd6 options=3<PERFORMNUD,ACCEPT_RTADV>
tun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> metric 0 mtu 1500
options=80000<LINKSTATE>
inet 10.8.0.1 --> 10.8.0.2 netmask 0xffffffff