Subject: Re: IPFiler ( ipf ) for dial-up and LAN
To: Manuel Bouyer <bouyer@antioche.eu.org>
From: Sean Finney <seanius@seanius.net>
List: port-i386
Date: 04/14/2002 11:54:03
On Sun, Apr 14, 2002 at 05:17:20PM +0200, Manuel Bouyer wrote:
> On Sun, Apr 14, 2002 at 11:08:50AM -0500, Sean Finney wrote:
> > On Sun, Apr 14, 2002 at 04:14:32PM +0200, Manuel Bouyer wrote:
> > > I don't understand why you need sysctl before ipnat ? Do you have
> > > some special sysctl settings ?
> > 
> > net.inet.ip.forwarding=1
> > net.inet.ip6.forwarding=1
> 
> But this can be set either before or after ipnat has loaded.
> On my sparc I can turn it on/off while running, without the need to reload
> ipfilter.

hey, cool--didn't know that.  i think one could still be justified
in wanting it done first though, so that when ipnat is turned on,
it'll 'work' right away.  then again i suppose there could also
be reasons to wait too, like waiting until after the bootup finishes?

--sean