If I don't get it wrong, that'll be:

# rule to NAT internal network
map ep0 172.22.0.0/26 -> 1.2.3.4/N

where:
- ep0 is your external interfac
- 1.2.3.4/N would be your external address space (replace with correct values).

you can do the same with other networks such as the DMZ (I personally prefer
to give DMZ hosts real addresses, but that's probably a personnal choice).

cheers,
mouss

At 09:51 11/09/00 +0800, Ronneil Camara wrote:
>Anyways, I got a specific question for openbsd advocates.
>
>Reference to my diagram, let say we have an smtp and http server on the DMZ
>side. How would my ipnat.rules look like? Supposing my interfaces are ep0,
>ep1 and ep2.

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to