From owner-FreeBSD-users-jp@jp.FreeBSD.org Fri Mar  1 16:42:04 2002
Received: (from daemon@localhost)
	by castle.jp.FreeBSD.org (8.11.6+3.4W/8.11.3) id g217g4475801;
	Fri, 1 Mar 2002 16:42:04 +0900 (JST)
	(envelope-from owner-FreeBSD-users-jp@jp.FreeBSD.org)
Received: from polymer3.scphys.kyoto-u.ac.jp (polymer3.scphys.kyoto-u.ac.jp [130.54.56.153])
	by castle.jp.FreeBSD.org (8.11.6+3.4W/8.11.3) with ESMTP/inet id g217g4G75796
	for <FreeBSD-users-jp@jp.freebsd.org>; Fri, 1 Mar 2002 16:42:04 +0900 (JST)
	(envelope-from turutani@scphys.kyoto-u.ac.jp)
Received: from polymer5.scphys.kyoto-u.ac.jp (polymer5.scphys.kyoto-u.ac.jp [130.54.56.155])
	by polymer3.scphys.kyoto-u.ac.jp (8.11.6/8.11.6/20011229-1) with SMTP id g217fwb40728;
	Fri, 1 Mar 2002 16:42:04 +0900 (JST)
	(envelope-from turutani@scphys.kyoto-u.ac.jp)
Message-Id: <200203010741.AA00687@polymer5.scphys.kyoto-u.ac.jp>
From: Tsurutani Naoki <turutani@scphys.kyoto-u.ac.jp>
Date: Fri, 01 Mar 2002 16:41:53 +0900
To: FreeBSD-users-jp@jp.FreeBSD.org
MIME-Version: 1.0
X-Mailer: AL-Mail32 Version 1.12
Content-Type: text/plain; charset=iso-2022-jp
Reply-To: FreeBSD-users-jp@jp.FreeBSD.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+011218
X-Sequence: FreeBSD-users-jp 67192
Subject: [FreeBSD-users-jp 67192] natd + ipfw
 =?ISO-2022-JP?B?GyRCJEckTiQqNCskYUBfRGokcjY1JCgkRiQvJEAbKEI=?=
 =?ISO-2022-JP?B?GyRCJDUkJBsoQg==?=
Errors-To: owner-FreeBSD-users-jp@jp.FreeBSD.org
Sender: owner-FreeBSD-users-jp@jp.FreeBSD.org
X-Originator: turutani@scphys.kyoto-u.ac.jp

$B$3$s$K$A$O!"$D$k$?$K$G$9!#(B

 natd + ipfw $B$G!"0J2<$N$h$&$J(Bnetwork$B$r9M$($F$$$^$9!#(B

      (aaa.bbb.0.0/16)         ed0[aaa.bbb.0.2]
$B30It(B ---- LAN1 ----------------- FreeBSD
                                    | ed1[192.168.0.1]
                                    |
                           ------- LAN2 ---------
                              (192.168.0.0/24)

$B>e?^$G(B FreeBSD $B%^%7%s$K$O(B 4.5-STABLE $B$rMQ$$!"(B
/etc/rc.conf $B$O$3$N$h$&$K$7$F$$$^$7$?!#(B
NAPT $B$rMQ$$$?$h$/$"$k9=@.$@$H;W$$$^$9!#(B

firewall_enable="YES"
firewall_script="/etc/rc.firewall"
firewall_type="OPEN"
natd_program="/sbin/natd"
natd_enable="YES"
natd_interface="ed0"

 $B$3$3$G!"(BLAN1 $B$N%[%9%H$N(B default router$B$r(B aaa.bbb.0.2 $B$K8~$1$k$H!"(B
192.168.0.2 $B$J$I(B LAN2 $B$N%[%9%H$K@\B3$G$-$F$7$^$$$^$9!#(B

 LAN2 --> LAN1 $B$O2DG=$G!"$=$N5U$O$G$-$J$$$h$&$K$7$?$$$3$H$O(B
$B$h$/$"$k$H;W$$$^$9$,!"3'$5$s$O$I$&$7$F$5$l$F$k$N$G$7$g$&$+!)(B
 $B$b$A$m$s!"2?$rDL$7$F2?$rDL$5$J$$$N$+$r7h$a$J$$$H$$$1$J$$$N$G(B
$B$7$g$&$,!"%Y!<%9$H$J$k$h$&$J!"$"$kDxEY$*<j7Z$J@_Dj$H$$$&$N$O(B
$B$J$$$N$G$7$g$&$+!)(B

 $B$J$*!"(Bfirewall_type="SIMPLE" $B$H$9$k$H!"$=$N$^$^$G$O(B
$B$[$H$s$I30It$X7R$,$i$J$+$C$?$N$G!":#$O(B rc.firewall $B$K(B
$B<j$r2C$($F;n$7$F$$$^$9!#(B

----
$B$D$k$?$K$J$*$-(B
