<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>OpenBSD and FreeBSD resources &#187; NAT</title>
	<atom:link href="http://purebsd.com/tag/nat/feed" rel="self" type="application/rss+xml" />
	<link>http://purebsd.com</link>
	<description></description>
	<lastBuildDate>Tue, 01 Jun 2010 06:01:11 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Network Address Translation</title>
		<link>http://purebsd.com/network-address-translation.html</link>
		<comments>http://purebsd.com/network-address-translation.html#comments</comments>
		<pubDate>Tue, 01 Jun 2010 04:32:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[OpenBSD]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[NAT]]></category>

		<guid isPermaLink="false">http://purebsd.com/?p=18</guid>
		<description><![CDATA[Note: This page is for people still using OpenBSD versions below 3.0 or OpenBSD versions above 2.9 patched to include IPFilter support. This page will be restructured soon. To enable NAT you should enable ipfilter and ipnat in /etc/rc.conf and edit/etc/ipnat.rules to reflect your needs. An example. rl0 is the external interface, connected with the internet. Proxy outgoing FTP [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Note:</strong> This page is for people still using OpenBSD versions below 3.0 or OpenBSD versions above 2.9 patched to include IPFilter support. This page will be restructured soon.</p>
<p>To enable NAT you should enable <code>ipfilter</code> and <code>ipnat</code> in <code>/etc/rc.conf</code> and edit<code>/etc/ipnat.rules</code> to reflect your needs.</p>
<p>An example. <code>rl0</code> is the external interface, connected with the internet.</p>
<p>Proxy outgoing FTP connections from the intranet:</p>
<p><code> map rl0 192.168.0.0/24 -&gt; rl0/32 proxy port ftp ftp/tcp</code></p>
<p>Do some redirection from the outside to an internal host:</p>
<p><code> rdr rl0 0.0.0.0/0 port 8022 -&gt; 192.168.0.8 port 22<br />
rdr rl0 0.0.0.0/0 port 8080 -&gt; 192.168.0.8 port 80<br />
</code><br />
Two NAT rules to let the intranet transparently talk with the internet:</p>
<p><code> map rl0 192.168.0.0/24 -&gt; rl0/32 portmap tcp/udp 10000:20000<br />
map rl0 192.168.0.0/24 -&gt; rl0/32<br />
</code><br />
More coming soon.</p>
]]></content:encoded>
			<wfw:commentRss>http://purebsd.com/network-address-translation.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

