Return to BSD News archive
Path: euryale.cc.adfa.oz.au!newshost.carno.net.au!harbinger.cc.monash.edu.au!news.rmit.EDU.AU!goanna.cs.rmit.edu.au!news.apana.org.au!cantor.edge.net.au!news.teragen.com.au!news.access.net.au!news.mel.connect.com.au!munnari.OZ.AU!news.ecn.uoknor.edu!news.ysu.edu!news.radio.cz!newsbastard.radio.cz!news.radio.cz!CESspool!www.nntp.primenet.com!nntp.primenet.com!news.mathworks.com!rill.news.pipex.net!pipex!tank.news.pipex.net!pipex!news.utell.co.uk!usenet From: brian@shift.lan.awfulhak.org (Brian Somers) Newsgroups: comp.unix.bsd.freebsd.misc Subject: Re: IP Masquerading possible? Perhaps transparent proxies? Date: 5 Mar 1997 15:43:56 GMT Organization: Awfulhak Ltd. Lines: 33 Message-ID: <5fk4bs$req@ui-gate.utell.co.uk> References: <5f637n$n93@news.gvsu.edu> <5fgpbn$b7d$4@easystreet03> <5fhluh$r24@ui-gate.utell.co.uk> <5fj9fg$sjg$2@easystreet03> Reply-To: brian@awfulhak.demon.co.uk, brian@utell.co.uk NNTP-Posting-Host: shift.utell.net Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Newsreader: knews 0.9.8 Xref: euryale.cc.adfa.oz.au comp.unix.bsd.freebsd.misc:36602 In article <5fj9fg$sjg$2@easystreet03>, tedm@agora.rdrop.com (Ted Mittelstaedt) writes: > In article <5fhluh$r24@ui-gate.utell.co.uk>, brian@shift.lan.awfulhak.org (Brian Somers) says: >> >> >>Also on Charles Motts site is the natd program (soon to be part of >>-current). It sits on an arbitrary IP or interface and does all the >>nice things that Charles Motts stuff does (using the same code). >>It's written by Ari Suutari <ari.suutari@ps.carel.fi>, and works >>with 2.2 and 3.0. >> > > I noticed that, and I'm wondering what the difference is between that > and ipfw is. It seems as all these translation programs use each > other's code, and I don't understand the point of putting all the effort > into them when NAT is really something that should be an integral > part of the distribution in the first place. Do these different > approaches really have pros and cons? It seems as though they all are > doing the same thing. You're right. The reason there's two programs (natd & ppp) that use the alias stuff is because of the possibility of an IP number change with ppp. At some point I'd like to just have natd, and maybe have ppp cooperating with it to say "re-evaluate the IP number for tun0 now". Maybe even just have natd provide a local socket mechanism like ppp. Not for a while yet.... I'm still trying to rebuild my machine after the loss of a 4Gb disk :( -- Brian <brian@awfulhak.org> <brian@freebsd.org> <http://www.awfulhak.demon.co.uk> Don't _EVER_ lose your sense of humour !