*BSD News Article 90407


Return to BSD News archive

Path: euryale.cc.adfa.oz.au!newshost.carno.net.au!harbinger.cc.monash.edu.au!news.rmit.EDU.AU!goanna.cs.rmit.edu.au!news.apana.org.au!cantor.edge.net.au!news.teragen.com.au!news.access.net.au!news.mel.connect.com.au!munnari.OZ.AU!news.ecn.uoknor.edu!news.ysu.edu!news.radio.cz!newsbastard.radio.cz!news.radio.cz!CESspool!www.nntp.primenet.com!nntp.primenet.com!news.mathworks.com!rill.news.pipex.net!pipex!tank.news.pipex.net!pipex!news.utell.co.uk!usenet
From: brian@shift.lan.awfulhak.org (Brian Somers)
Newsgroups: comp.unix.bsd.freebsd.misc
Subject: Re: IP Masquerading possible? Perhaps transparent proxies?
Date: 5 Mar 1997 15:43:56 GMT
Organization: Awfulhak Ltd.
Lines: 33
Message-ID: <5fk4bs$req@ui-gate.utell.co.uk>
References: <5f637n$n93@news.gvsu.edu> <5fgpbn$b7d$4@easystreet03>
    <5fhluh$r24@ui-gate.utell.co.uk> <5fj9fg$sjg$2@easystreet03>
Reply-To: brian@awfulhak.demon.co.uk, brian@utell.co.uk
NNTP-Posting-Host: shift.utell.net
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
X-Newsreader: knews 0.9.8
Xref: euryale.cc.adfa.oz.au comp.unix.bsd.freebsd.misc:36602

In article <5fj9fg$sjg$2@easystreet03>,
	tedm@agora.rdrop.com (Ted Mittelstaedt) writes:
> In article <5fhluh$r24@ui-gate.utell.co.uk>, brian@shift.lan.awfulhak.org (Brian Somers) says:
>>
>>
>>Also on Charles Motts site is the natd program (soon to be part of
>>-current).  It sits on an arbitrary IP or interface and does all the
>>nice things that Charles Motts stuff does (using the same code).
>>It's written by Ari Suutari <ari.suutari@ps.carel.fi>, and works
>>with 2.2 and 3.0.
>>
> 
> I noticed that, and I'm wondering what the difference is between that
> and ipfw is.  It seems as all these translation programs use each
> other's code, and I don't understand the point of putting all the effort
> into them when NAT is really something that should be an integral
> part of the distribution in the first place.  Do these different
> approaches really have pros and cons?  It seems as though they all are
> doing the same thing.

You're right.  The reason there's two programs (natd & ppp) that use the
alias stuff is because of the possibility of an IP number change with
ppp.  At some point I'd like to just have natd, and maybe have ppp
cooperating with it to say "re-evaluate the IP number for tun0 now".
Maybe even just have natd provide a local socket mechanism like ppp.

Not for a while yet.... I'm still trying to rebuild my machine after
the loss of a 4Gb disk :(

-- 
Brian <brian@awfulhak.org> <brian@freebsd.org>
      <http://www.awfulhak.demon.co.uk>
Don't _EVER_ lose your sense of humour !