Subject: IPFilter on sparc64
To: None <port-sparc64@netbsd.org>
From: Mr Mine Sakiyama <msakiyam@yahoo.com>
List: netbsd-help
Date: 11/20/2002 09:23:46
Hello. 
I am sort of having hard time getting ipfiler working
on NetBSD-1.6/sparc64 on Ultra5 workstation. I noticed
some email threads on ipfilter mailing list NetBSD was
posrted to sparc64 somewhat recently (june 2002?).
Also looks like there used be a bug with /dev/ipl code
(kern/17404). I wonder if those issues are gone away?
What happens is, I enabled (by default) options
PFIL_HOOKS and IPFILTER_LOG in GENERIC32 file. It
compiles without error. IPfiler also enabled in
/etc/defaults/rc.conf file. Upon reboot, ipfilter
initiates, /etc/ipf.conf has just two lines "pass in
all, pass out all". /etc/ipnat.conf has following
(rtk0 being external NIC),
map rtk0 192.168.0.0/16 -> 0.0.0.0/32 proxy port ftp
ftp/tcp
map rtk0 192.168.0.0/16 -> 0.0.0.0/32 portmap tcp/udp
40000:60000
map rtk0 192.168.0.0/16 -> 0.0.0.0/32
. One NIC is facing internal running DHCPD, the other
is connected to DSL router. From the NetBSD I can
reach both outside world and internal networks. But if
I try to ping the DSL router (which is the default
gateway for the NetBSD) from the internal network
(192.168.0.0/16) it times out. The external NIC on the
NetBSD is reachable from the internal network..Nothing
gets logged in /var/log/ipflog. Am I missing something
here? Actually all the configurations are copied from
another NetBSD/i386 that is working perfectly fine..In
the output of dmesg, I noticed some devices are
showing up as not configured:
power at ebus0 addr 724000-724003 ipl 37 not
configured
SUNW,pll at ebus0 addr 504000-504002 not configured
se at ebus0 addr 400000-40007f ipl 43 not configured
fdthree at ebus0 addr 3023f0-3023f7, 706000-70600f,
720000-720003 ipl 39 not configured
flashprom at ebus0 addr 0-fffff not configured
ATI Technologies 3D Rage Pro (VGA display, revision
0x5c) at pci1 dev 2 function 0 not configured
pcons at mainbus0 not configured
Could it possible that any of devices are affecting
ipfilter? Notice "ipl 39 not configured",, Has anyone
successfully used IPFilter on NetBSD/sparc64? 
thank you in advance.

Mine

__________________________________________________
Do you Yahoo!?
Yahoo! Web Hosting - Let the expert host your site
http://webhosting.yahoo.com