tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Using NetBSD as a travel router



Hi D’Arcy,
It’s been a while since I have used IPF, so I’m not going to spot anything wrong in your config, but I can think of two suggestions.

> On 25/01/2018, at 12:20 PM, D'Arcy Cain <darcy%NetBSD.org@localhost> wrote:
> 
> ipf.conf:
> pass in from any to any
> pass out from any to any
> 
> ipnat.conf:
> map athn0 192.168.215.111/32 -> 0/32 proxy port ftp ftp/tcp
> map athn0 192.168.215.111/32 -> 0/32 portmap tcp/udp 10000:20000
> map athn0 192.168.215.111/32 -> 0/32

1) This ruleset looks a bit short to me. I could be mistaken, but every time I’ve thought “she’ll be right” with IPF, I’ve been wrong.

2) You can use the ipmon command to view real-time activity and unviewed recent activity. This is a superb utility.

Cheers,
Lloyd


Home | Main Index | Thread Index | Old Index