Subject: Re: FTP over ipnat
To: Claudio Leite <port-i386@netbsd.org>
From: Mike Pelley <mike@pelley.com>
List: port-i386
Date: 08/13/1998 10:16:37
> I'm about to "inherit" an older machine which I think would serve
>great for a gateway machine for my local network (1 machine is ethernet,
>the other PLIP, and the 3rd has both- the gateway). I have used NAT under
>NetBSD before, but I always had to use passive mode in FTP otherwise
>transfers wouldn't work. Is there a way to fix this?


I'm running NAT under NetBSD/i386 1.3.2 and I've set it up so my FTP works
in active mode.  In the ipnat.conf I have 2 lines:

    map ppp0 10.0.0.0/24 -> 0.0.0.0/32 proxy port ftp ftp/tcp
    map ppp0 10.0.0.0/24 -> 0.0.0.0/32 portmap tcp/udp 10000:40000

The first sets up an ftp proxy service, where each outgoing ftp connection
is transparently proxied by the gateway machine so active FTP is possible.
The second sets up the regular many to 1 NAT.

CU!  Mike.

---
$3.35 Million for altavista.com... sigh.