<?xml version="1.0" encoding="koi8-r"?>
<rss version="0.91">
<channel>
    <title>OpenForum RSS: ng IPFW NATD </title>
    <link>https://slinkov.ru/openforum/vsluhforumID1/76599.html</link>
    <description>День добрый, &lt;br&gt;&lt;br&gt;может кто поможет с мелкой проблемой&lt;br&gt;&lt;br&gt;/etc/rc.firewall&lt;br&gt;&lt;br&gt;#!/bin/sh&lt;br&gt;&lt;br&gt;FwCMD=&quot;/sbin/ipfw -q&quot;&lt;br&gt;&lt;br&gt;LanOut=&quot;ng0&quot;&lt;br&gt;IpOut=&quot;ХХХ.ХХХ.ХХХ.ХХХ&quot;&lt;br&gt;&lt;br&gt;&lt;br&gt;LanIn=&quot;xl0&quot;&lt;br&gt;IpIn=&quot;192.168.1.5&quot;&lt;br&gt;NetIn=&quot;192.168.1.0/24&quot;&lt;br&gt;Ip_Lan=&quot;192.168.1&quot;&lt;br&gt;&lt;br&gt;VpnIf=&quot;ng1,ng2,ng3,ng4&quot;&lt;br&gt;&lt;br&gt;AllowTcpOutProtocols=&quot;80,443,25,110,21&quot;&lt;br&gt;AllowInProtocols=&quot;22&quot;&lt;br&gt;&lt;br&gt;DNSList=&quot;80.82.32.9&quot;&lt;br&gt;&lt;br&gt;$&#123;FwCMD&#125; -f flush&lt;br&gt;$&#123;FwCMD&#125; -f pipe flush&lt;br&gt;$&#123;FwCMD&#125; -f queue flush&lt;br&gt;&lt;br&gt;$&#123;FwCMD&#125; add allow ip from any to any via lo0&lt;br&gt;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 127.0.0.0/8&lt;br&gt;$&#123;FwCMD&#125; add deny ip from 127.0.0.0/8 to any&lt;br&gt;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from $&#123;NetIn&#125; to any in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from $&#123;NetOut&#125; to any in via $&#123;LanIn&#125;&lt;br&gt;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 10.0.0.0/8 in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 172.16.0.0/12 in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 192.168.0.0/16 in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 0.0.0.0/8 in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add deny ip from any to 169.254.0.0/16 in via $&#123;LanOut&#125;&lt;br&gt;$&#123;FwCMD&#125; add de</description>

<item>
    <title>ng IPFW NATD  (apanyovin)</title>
    <link>https://slinkov.ru/openforum/vsluhforumID1/76599.html#1</link>
    <pubDate>Thu, 04 Oct 2007 17:19:47 GMT</pubDate>
    <description>&amp;gt;&#091;оверквотинг удален&#093;&lt;br&gt;&amp;gt;# NAT &lt;br&gt;&amp;gt;natd_enable=&quot;YES&quot; &lt;br&gt;&amp;gt;natd_interface=&quot;ng0&quot; &lt;br&gt;&amp;gt;natd_flags=&quot; -m -u&quot; &lt;br&gt;&amp;gt;&lt;br&gt;&amp;gt;$&#123;FwCMD&#125; add allow ip from $&#123;NetIn&#125; to any out via $&#123;LanIn&#125; &lt;br&gt;&amp;gt;&lt;br&gt;&amp;gt;оно ловит все пакеты на внешнем интерфейсе, где криво? &lt;br&gt;&amp;gt;&lt;br&gt;&amp;gt;заранее спасибо &lt;br&gt;&lt;br&gt;вопрос снят!!&lt;br&gt;нужно перезапустить нат&lt;br&gt;&lt;br&gt;</description>
</item>

</channel>
</rss>
