Subject: problems with route-firewall
To: None <>
From: jandemore <>
List: tech-net
Date: 07/30/2002 12:20:13
We have a firewall runing in NetBSD with 4 ethernet cards.
The first one ( with the ip is conetct to Adsl router (with
The secoond one ( to a lan (
The third one ( to a lan (
The second one ( to a lan (

The ipnat.conf is these:
#!/sbin/ipnat -f -
# fxp0 - (external) connection to ISP, address
# fxp1 - (internal) network interface, address
map fxp1 -> portmap tcp/udp 20000:65000
map fxp1 ->
map rtk0 -> portmap tcp/udp 0:65000
map rtk0 ->
map fxp2 -> portmap tcp/udp 20000:65000
map fxp2 ->
map fxp0 -> portmap tcp/udp 20000:65000
map fxp0 ->
#map fxp0 ->
#To make ftp work, using the internal ftp proxy, use:
map fxp1 -> proxy port ftp ftp/tcp
map rtk0 -> proxy port ftp ftp/tcp
map fxp2 -> proxy port ftp ftp/tcp

ANd the route table is:

Routing tables

Destination      Gateway            Flags
default      UG         link#2             U         link#4             U         link#3             U
loopback          UG
localhost          UH      link#1             U      0:40:43:c7:6f:66   UH
ogro             0:a0:c9:7:b2:bf    UH

The problem is that nobody can connect to the ADSL router from the LANS (not
even ping it) and they can't connect to the internet, all of the firewall's
cards are renponding to pings from everybody (slowly but correct).

Thank you in advance.