*BSD News Article 54024


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.anu.edu.au!harbinger.cc.monash.edu.au!news.uwa.edu.au!classic.iinet.com.au!swing.iinet.net.au!news.uoregon.edu!usenet.eel.ufl.edu!news.interlog.com!news.dra.com!news.mid.net!news.ksu.ksu.edu!hptemp1.cc.umr.edu!serges
From: serges@rocket.cc.umr.edu (serges )
Newsgroups: comp.unix.bsd.freebsd.misc
Subject: Re: IP Forwarding under FreeBSD
Date: 1 Nov 1995 06:51:21 GMT
Organization: UMR Missouri's Technological University
Lines: 53
Message-ID: <4775d9$bo@hptemp1.cc.umr.edu>
References: <46ngrd$5hq@bilbo.nask.org.pl> <470e8d$1m8@uriah.heep.sax.de>
NNTP-Posting-Host: rocket.cc.umr.edu
X-Newsreader: TIN [version 1.2 PL2]

J Wunsch (j@uriah.heep.sax.de) wrote:
: Jaroslaw Bazydlo <jarekb@ire.pw.edu.pl> wrote:
: >I've just reinstall my PPP server to FreeBSD machine and noticed that
: >IP Forwarding does not simply work. What I did is:
: >
: >i) recompiled the kernel with 
: >	options GATEWAY

: Obsolete.  Use ``sysctl -w net.inet.ip.forwarding=1'' instead.

"Obsolete" as of what release? True the sysctl approach is quicker - that 
is if you like the idea of editing the kernel image as a matter of course 
(and not as a hack)

: >ii) executed routed with -s option

: Obsolete and dangerous.  The static route for the interface is being
: installed automatically when the link is up, and you've got the option
: (to pppd) to install a default route, too.  (Everything else could be
: handled by scripts.)

"dangerous" why? The "-s" forces routed to do its job (ie. its the default
behaviour unlexx -q is specified). If you are  running routed (in the 
first place) on gateway/routing machine, then routed needs to be able to 
maintain the sanity of your routes. I use it to delete inactive routes 
created by pppd. Besides, my ppp interface is dynamic and requires that 
the routing tables be flushed (or monitored) for sanity's sake.

: >Could anyone tell me what is wrong. My serwer does not want to forward IP
: >pockets out of it.

: Can you tell us a bit more about your actual configuration?  Many
: people can succesfully forward packets with a FreeBSD box, so it's
: most likely something with your setup.

True. 
My biggest problem was getting packets to forward in both directions; after
blaming the IP forwarding of my FBSD 2.05 gateway, I realized that my ppp
connection (a dialup Cisco server) was spoofing my IP packets, which put 
an end to my hopes getting IP forwarding to work. :(

Doug.

: -- 
: cheers, J"org

: joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/ -- NIC: JW11-RIPE
: Never trust an operating system you don't have sources for. ;-)

--
* To the past or to the future. To an age when thought is free.    * 
* From the age of Big Brother, from the age of the Thought police. * 
* From a dead man; Greetings.                                      *