RE: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
> -Original Message- > From: freebsder [mailto:[EMAIL PROTECTED] > Sent: Sunday, July 18, 2004 10:16 AM > To: [EMAIL PROTECTED] > Cc: [EMAIL PROTECTED] > Subject: Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2 > > > Hi Mark, > > I put in: > natd_flags="-dynamic" > But I could not get it up and running. > > Btw, previously, what I've been doing to get the > machine on line was typing in: > > # ipfw add 100 allow tcp from any to any via any > 00100 allow tcp from any to any > # ipfw add 100 allow ip from any to any via any > 00100 allow ip from any to any > > I'm doing this because this allows me to surf the web > and download my Email respectively. So when I do an > ipfw, I get: > > # ipfw -a list > 00100 308 68064 allow tcp from any to any > 00100 38 3187 allow ip from any to any > 65535 337 23993 deny ip from any to any > > Now, after I made the change you suggested and > rebooted, I got: > # ipfw -a list > 00050 276 17396 divert 8668 ip from any to any via > tun0 > 00100 134 14156 allow ip from any to any via lo0 > 00200 0 0 deny ip from any to 127.0.0.0/8 > 00300 0 0 deny ip from 127.0.0.0/8 to any > 65000 0 0 allow ip from any to any > 65535 0 0 deny ip from any to any > > Then I tried pinging out from my Win XP box to no > avail. > > I even added: > > # ipfw add 100 allow tcp from any to any via any > 00100 allow tcp from any to any > # ipfw add 100 allow ip from any to any via any > 00100 allow ip from any to any > > to get: > > 00050 286 17938 divert 8668 ip from any to any via > tun0 > 00100 134 14156 allow ip from any to any via lo0 > 00100 0 0 allow tcp from any to any > 00100 0 0 allow ip from any to any > 00200 0 0 deny ip from any to 127.0.0.0/8 > 00300 0 0 deny ip from 127.0.0.0/8 to any > 65000 0 0 allow ip from any to any > 65535 0 0 deny ip from any to any > > but still no dice! > > I'm thinking I should probably Delete the following > two lines from above: > 00200 0 0 deny ip from any to 127.0.0.0/8 > 00300 0 0 deny ip from 127.0.0.0/8 to any > > and see what happends. I will try this out now, but > if you have any other suggestions, prey tell. > > as always ... thankyou. > > Your Message:: > > Jumping in late, > > natd_enable="YES" # forward from inside > natd_interface="tun0" # this being the connection to > outside world > natd_flags="-dynamic" # because the ip addy may change > > > I don't know what your trying to do here?? > >natd_flags="redirect_port tcp 192.168.1.1:80 80" > I would remove this until you get everything else > working. > This all looks fine to me. Is your winxp gateway set correctly? It should be the internal IP of your FreeBSd box. dave ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
Hi Mark, I put in: natd_flags="-dynamic" But I could not get it up and running. Btw, previously, what I've been doing to get the machine on line was typing in: # ipfw add 100 allow tcp from any to any via any 00100 allow tcp from any to any # ipfw add 100 allow ip from any to any via any 00100 allow ip from any to any I'm doing this because this allows me to surf the web and download my Email respectively. So when I do an ipfw, I get: # ipfw -a list 00100 308 68064 allow tcp from any to any 00100 38 3187 allow ip from any to any 65535 337 23993 deny ip from any to any Now, after I made the change you suggested and rebooted, I got: # ipfw -a list 00050 276 17396 divert 8668 ip from any to any via tun0 00100 134 14156 allow ip from any to any via lo0 00200 0 0 deny ip from any to 127.0.0.0/8 00300 0 0 deny ip from 127.0.0.0/8 to any 65000 0 0 allow ip from any to any 65535 0 0 deny ip from any to any Then I tried pinging out from my Win XP box to no avail. I even added: # ipfw add 100 allow tcp from any to any via any 00100 allow tcp from any to any # ipfw add 100 allow ip from any to any via any 00100 allow ip from any to any to get: 00050 286 17938 divert 8668 ip from any to any via tun0 00100 134 14156 allow ip from any to any via lo0 00100 0 0 allow tcp from any to any 00100 0 0 allow ip from any to any 00200 0 0 deny ip from any to 127.0.0.0/8 00300 0 0 deny ip from 127.0.0.0/8 to any 65000 0 0 allow ip from any to any 65535 0 0 deny ip from any to any but still no dice! I'm thinking I should probably Delete the following two lines from above: 00200 0 0 deny ip from any to 127.0.0.0/8 00300 0 0 deny ip from 127.0.0.0/8 to any and see what happends. I will try this out now, but if you have any other suggestions, prey tell. as always ... thankyou. Your Message:: Jumping in late, natd_enable="YES" # forward from inside natd_interface="tun0" # this being the connection to outside world natd_flags="-dynamic" # because the ip addy may change I don't know what your trying to do here?? >natd_flags="redirect_port tcp 192.168.1.1:80 80" I would remove this until you get everything else working. > Hi Bill, __ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
On Fri, Jul 16, 2004 at 06:37:08PM -0700, freebsder wrote: Jumping in late, natd_enable="YES" # forward from inside natd_interface="tun0" # this being the connection to outside world natd_flags="-dynamic" # because the ip addy may change I don't know what your trying to do here?? >natd_flags="redirect_port tcp 192.168.1.1:80 80" I would remove this until you get everything else working. > Hi Bill, > > The interface creates tun0 when it dials but I tried > both "tun0" and "ppp0" and neither seemed to do the > trick. > > Any other trouble shooting thoughts or ideas? > > Nav > > new RC.CONF : > > ## Firewall > > [...] > natd_interface="tun0" > #natd_interface="ppp0" > #natd_interface="vr0" > natd_flags="redirect_port tcp 192.168.1.1:80 80" > rpc_statd_enable="YES" > tcp_extensions="YES" > > ## Mail > sendmail_enable="YES" > > IFCONFIG : > > #ifconfig > ed0: > flags=8843 mtu > 1500 > inet 192.168.1.1 netmask 0xff00 broadcast > 192.168.1.255 > inet6 fe80::280:c8ff:fede:c937%ed0 prefixlen > 64 scopeid 0x1 > ether 00:80:c8:de:c9:37 > vr0: > flags=8843 mtu > 1500 > inet6 fe80::20e:a6ff:fe9c:c81d%vr0 prefixlen > 64 scopeid 0x2 > inet 192.168.0.1 netmask 0xff00 broadcast > 192.168.0.255 > ether 00:0e:a6:9c:c8:1d > media: Ethernet 10baseT/UTP > status: active > lp0: flags=8810 mtu > 1500 > lo0: flags=8049 mtu > 16384 > inet6 ::1 prefixlen 128 > inet6 fe80::1%lo0 prefixlen 64 scopeid 0x4 > inet 127.0.0.1 netmask 0xff00 > tun0: flags=8051 mtu > 1492 > inet 6X.7X.5X.23X --> 6X.23X.25X.12X netmask > 0x > Opened by PID 215 > > > > ORIGINAL MESSAGE > Subject: > Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE > #2 > > > freebsder <[EMAIL PROTECTED]> wrote: > > All my computers can ping each other! BUT I can > only > > connect to the internet from the FreeBSD server. > All > > requests made by the WinXP machines go unanswered!! > > Yet when I ping from them, they can connect to any > > computer on the network BUT CANNOT ping OUTSIDE the > > network nor fetch any information outside this > > network. > > > > Any ideas why my FreeBSD machine is not routing > these > > requests and putting up a road block? > > > > RC.CONF > > > > font8x14="NO" > > font8x16="swiss-8x16" > > font8x8="swiss-8x8" > > inetd_enable="YES" > > linux_enable="YES" > > moused_enable="YES" > > moused_port="/dev/psm0" > > moused_type="auto" > > nfs_client_enable="YES" > > nfs_server_enable="YES" > > rpcbind_enable="YES" > > saver="rain" > > scrnmap="NO" > > usbd_enable="YES" > > ifconfig_vr0="DHCP" > > ifconfig_ed0="DHCP" > > > > ##initialise NIC > > network_interfaces="vr0 ed0 lo0 tun0" > > ifconfig tun0 > > > > #ifconfig vr0= "media 10baseT/UTP up" > > #ifconfig_ed0="inet 192.168.0.3 netmask > 255.255.0.0" > > > > #Changes as suggested: > > ifconfig_ed0="inet 192.168.1.1/24" > > ifconfig_vr0="inet 192.168.0.1/24 media > 10baseT/UTP > > up" > > > > #ifconfig_vr0="inet 192.168.0.1 netmask > 255.255.0.0" > > > > hostname="my.server.com" > > > > ##User ppp configuration > > ppp_enable="YES" > > ppp_mode="ddial" > > ppp_nat="NO" > > ppp_profile="bellnet" > > #ppp_user="root" > > > > > > ## Firewall > > gateway_enable="YES" > > firewall_enable="YES" > > firewall_type="OPEN" > > #firewall_quiet="NO" > > firewall_script="/etc/rc/firewall" > > natd_enable="YES" > > natd_interface="vr0" > > I believe you'll want: > natd_interface="ppp0" > or is it "tun0"? I don't remember (long time since > I've
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
Hi Bill, The interface creates tun0 when it dials but I tried both "tun0" and "ppp0" and neither seemed to do the trick. Any other trouble shooting thoughts or ideas? Nav new RC.CONF : ## Firewall [...] natd_interface="tun0" #natd_interface="ppp0" #natd_interface="vr0" natd_flags="redirect_port tcp 192.168.1.1:80 80" rpc_statd_enable="YES" tcp_extensions="YES" ## Mail sendmail_enable="YES" IFCONFIG : #ifconfig ed0: flags=8843 mtu 1500 inet 192.168.1.1 netmask 0xff00 broadcast 192.168.1.255 inet6 fe80::280:c8ff:fede:c937%ed0 prefixlen 64 scopeid 0x1 ether 00:80:c8:de:c9:37 vr0: flags=8843 mtu 1500 inet6 fe80::20e:a6ff:fe9c:c81d%vr0 prefixlen 64 scopeid 0x2 inet 192.168.0.1 netmask 0xff00 broadcast 192.168.0.255 ether 00:0e:a6:9c:c8:1d media: Ethernet 10baseT/UTP status: active lp0: flags=8810 mtu 1500 lo0: flags=8049 mtu 16384 inet6 ::1 prefixlen 128 inet6 fe80::1%lo0 prefixlen 64 scopeid 0x4 inet 127.0.0.1 netmask 0xff00 tun0: flags=8051 mtu 1492 inet 6X.7X.5X.23X --> 6X.23X.25X.12X netmask 0x Opened by PID 215 ORIGINAL MESSAGE Subject: Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2 freebsder <[EMAIL PROTECTED]> wrote: > All my computers can ping each other! BUT I can only > connect to the internet from the FreeBSD server. All > requests made by the WinXP machines go unanswered!! > Yet when I ping from them, they can connect to any > computer on the network BUT CANNOT ping OUTSIDE the > network nor fetch any information outside this > network. > > Any ideas why my FreeBSD machine is not routing these > requests and putting up a road block? > > RC.CONF > > font8x14="NO" > font8x16="swiss-8x16" > font8x8="swiss-8x8" > inetd_enable="YES" > linux_enable="YES" > moused_enable="YES" > moused_port="/dev/psm0" > moused_type="auto" > nfs_client_enable="YES" > nfs_server_enable="YES" > rpcbind_enable="YES" > saver="rain" > scrnmap="NO" > usbd_enable="YES" > ifconfig_vr0="DHCP" > ifconfig_ed0="DHCP" > > ##initialise NIC > network_interfaces="vr0 ed0 lo0 tun0" > ifconfig tun0 > > #ifconfig vr0= "media 10baseT/UTP up" > #ifconfig_ed0="inet 192.168.0.3 netmask 255.255.0.0" > > #Changes as suggested: > ifconfig_ed0="inet 192.168.1.1/24" > ifconfig_vr0="inet 192.168.0.1/24 media 10baseT/UTP > up" > > #ifconfig_vr0="inet 192.168.0.1 netmask 255.255.0.0" > > hostname="my.server.com" > > ##User ppp configuration > ppp_enable="YES" > ppp_mode="ddial" > ppp_nat="NO" > ppp_profile="bellnet" > #ppp_user="root" > > > ## Firewall > gateway_enable="YES" > firewall_enable="YES" > firewall_type="OPEN" > #firewall_quiet="NO" > firewall_script="/etc/rc/firewall" > natd_enable="YES" > natd_interface="vr0" I believe you'll want: natd_interface="ppp0" or is it "tun0"? I don't remember (long time since I've used ppp) but the upshot is that whatever interface ppp creates when it dials, that's what you want natd_interface set to. > natd_flags="redirect_port tcp 192.168.1.1:80 80" > rpc_statd_enable="YES" > tcp_extensions="YES" > > ## Mail > sendmail_enable="YES" __ Do you Yahoo!? Vote for the stars of Yahoo!'s next ad campaign! http://advision.webevents.yahoo.com/yahoo/votelifeengine/ ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
On Fri, 16 Jul 2004, freebsder wrote: Hi Chuck, This is what I get: # ipfw -a list 00100 49820 12066079 allow ip from any to any 00100 00 allow tcp from any to any 65535 2 96 deny ip from any to any The Second and Third lines don't seem right.. What do I need to do correct the problem here. First, you need to stop top-posting, which makes it difficult to reply. If you carefully read Chuck's response to you: There's likely to be a problem with /etc/rc/firewall, He's trying to tell you that should be /etc/rc.firewall (note the dot). -Warren Block * Rapid City, South Dakota USA ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
freebsder <[EMAIL PROTECTED]> wrote: > All my computers can ping each other! BUT I can only > connect to the internet from the FreeBSD server. All > requests made by the WinXP machines go unanswered!! > Yet when I ping from them, they can connect to any > computer on the network BUT CANNOT ping OUTSIDE the > network nor fetch any information outside this > network. > > Any ideas why my FreeBSD machine is not routing these > requests and putting up a road block? > > RC.CONF > > font8x14="NO" > font8x16="swiss-8x16" > font8x8="swiss-8x8" > inetd_enable="YES" > linux_enable="YES" > moused_enable="YES" > moused_port="/dev/psm0" > moused_type="auto" > nfs_client_enable="YES" > nfs_server_enable="YES" > rpcbind_enable="YES" > saver="rain" > scrnmap="NO" > usbd_enable="YES" > ifconfig_vr0="DHCP" > ifconfig_ed0="DHCP" > > ##initialise NIC > network_interfaces="vr0 ed0 lo0 tun0" > ifconfig tun0 > > #ifconfig vr0= "media 10baseT/UTP up" > #ifconfig_ed0="inet 192.168.0.3 netmask 255.255.0.0" > > #Changes as suggested: > ifconfig_ed0="inet 192.168.1.1/24" > ifconfig_vr0="inet 192.168.0.1/24 media 10baseT/UTP > up" > > #ifconfig_vr0="inet 192.168.0.1 netmask 255.255.0.0" > > hostname="my.server.com" > > ##User ppp configuration > ppp_enable="YES" > ppp_mode="ddial" > ppp_nat="NO" > ppp_profile="bellnet" > #ppp_user="root" > > > ## Firewall > gateway_enable="YES" > firewall_enable="YES" > firewall_type="OPEN" > #firewall_quiet="NO" > firewall_script="/etc/rc/firewall" > natd_enable="YES" > natd_interface="vr0" I believe you'll want: natd_interface="ppp0" or is it "tun0"? I don't remember (long time since I've used ppp) but the upshot is that whatever interface ppp creates when it dials, that's what you want natd_interface set to. > natd_flags="redirect_port tcp 192.168.1.1:80 80" > rpc_statd_enable="YES" > tcp_extensions="YES" > > ## Mail > sendmail_enable="YES" -- Bill Moran Potential Technologies http://www.potentialtech.com ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
Hi Chuck, This is what I get: # ipfw -a list 00100 49820 12066079 allow ip from any to any 00100 00 allow tcp from any to any 65535 2 96 deny ip from any to any The Second and Third lines don't seem right.. What do I need to do correct the problem here. The Firewall Type is set to OPEN - doesn't that mean that it would not really matter how the firewall issetup. (btw, please excuse my overt ignorance.) I had it set to SIMPLE before and made some changes to the firewall file but it was not working so I just set it at OPEN and was able to access the internet. Although now this may pose a problem with this network. Please advise. I can send you a copy of my existing firewall file if needed ... Thanks as always freebsder wrote: > Any ideas why my FreeBSD machine is not routing these > requests and putting up a road block? [ ... ] > firewall_type="OPEN" > #firewall_quiet="NO" > firewall_script="/etc/rc/firewall" > natd_enable="YES" There's likely to be a problem with /etc/rc/firewall, assuming that even exists. Does "ipfw -a list" show a divert rule to natd? -- -Chuck __ Do you Yahoo!? Vote for the stars of Yahoo!'s next ad campaign! http://advision.webevents.yahoo.com/yahoo/votelifeengine/ ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Re: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE #2
freebsder wrote: Any ideas why my FreeBSD machine is not routing these requests and putting up a road block? [ ... ] firewall_type="OPEN" #firewall_quiet="NO" firewall_script="/etc/rc/firewall" natd_enable="YES" There's likely to be a problem with /etc/rc/firewall, assuming that even exists. Does "ipfw -a list" show a divert rule to natd? -- -Chuck ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
RE: FreeBSD 5.1 <-> WinXP Networking Problem UPDATE
> From: freebsder [mailto:[EMAIL PROTECTED] > > Hi Everyone ... thanks for your help thus far. I've > made some changes below. [I have Not made all the > changes that you've kindly suggested but enough that I > am able to ping back and forth ... if I have ignored > your suggestion and you still see a gapping error, > please feel free to reinterate, I won't hold it again > you!] <...> > I think that the > natd_flags="redirect_port tcp 192.168.0.3:80 80" > should be: > natd_flags="redirect_port tcp 192.168.0.1:80 80" natd_flags="redirect_port tcp 192.168.1.1:80 80" > ifconfig vr0= "media 10baseT/UTP up" > ifconfig_ed0="inet 192.168.0.1 netmask 255.255.0.0" ifconfig_vr0="inet 192.168.0.1/24 media 10baseT/UTP up" ifconfig_ed0="inet 192.168.1.1/24" You will then need to change the IP addresses of the two WinXP machines to use addresses starting with 192.168.1 (excluding .0, .1 and .255), a netmask of 255.255.255.0 and a gateway of 192.168.1.1. Thanks to Matthew Seaman for bringing to my attention that ifconfig now supports CIDR notation. ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"