Subject: RE: IPNat, IPF, and webservers...
To: 'Mike Pelley' <>
From: David Woyciesjes <>
List: tech-net
Date: 10/20/2000 15:02:27
Yes, the firewall is set as the gateway. And thanks for the commands...
--- David A Woyciesjes
--- C & IS Support Specialist
--- Yale University Press
--- (203) 432-0953
--- ICQ # - 905818
-> -----Original Message-----
-> From: Mike Pelley []
-> Sent: Friday, October 20, 2000 2:46 PM
-> To: David Woyciesjes
-> Cc: NetBSD Tech-Net
-> Subject: Re: IPNat, IPF, and webservers...
-> I haven't looked at the stuff at but here are
-> some thoughts.
-> > Now, all I want is to allow http (port 80) traffic thru to machine
-> >
-> [stuff deleted]
-> > rdr ppp0 0/32 port 80 -> port 80 tcp
-> One thing to check - the default gateway for
-> must be the NetBSD
-> machine so ipnat can rewrite the reply packets. I imagine
-> you would have
-> set it that way but maybe not.
-> > BTW, aren't there command to renew the ipf and ipnat rules
-> w/o rebooting?
-> To renew ipnat rules without disconnecting current sessions
-> you can use
-> "ipnat -C -f /etc/ipnat.conf", and to renew ipfilter rules
-> you can use
-> "ipf -Fa -f /etc/ipf.conf".