[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: NAT'ing & stuff like that



> At 12:32 PM 12/31/98 -0500, you wrote:
> 
> >You are probably blocking something that you shouldn't be, or aren't
> >using keep-state (which makes things _so_ much easier).  I've attached my
> >ipnat.rules and ipf.rules.
> 
> I've looked at these files.. My ipnat.rules is very stock, like yours. My
> ipf.rules are even 'stocker'. :)
> 
> I decided, especially after the -alias switch on ppp gave same results, that
> my NAT'ing was just fine, and I did find the problem. Thanks to all that
> repsponded, even though I didn't find the answer here, it did tell me what I
> was doing right...
> 
> Here's what the problem was, (and this may be a slight flaw in ppp, I don't
> know, I'm no 'techi') in the ppp conf file, I had set the mru and mtu values
> to 1100. I had done this initially because the ppp that shipped with 2.3 had
> a problem with overflow, and this was a lame attempt to fix it, before I
> figured out that the problem was with ppp itself. After I set the mtu and
> mru values to 1500, everything works just fine now.

IIRC, the 2.3 thing was actually a problem with the tun device 
rather than with ppp..... but I digress !

Would you be able to try things with mtu 1500 & mru 1100, then with 
mtu 1100 & mru 1500 ?  I'd be interested to know if the problem is 
with incoming traffic (mtu 1500 & mru 1100 works) or outgoing (mtu 
1100 & mru 1500 works).  Also, does everything work with the IP 
aliasing disabled ?

Thanks.

> ----------------------------
> Dana Booth <dana@mmi.oz.net>
> Tacoma, Wa., USA
> ----------------------------

-- 
Brian <brian@Awfulhak.org> <brian@FreeBSD.org> <brian@OpenBSD.org>
      <http://www.Awfulhak.org>
Don't _EVER_ lose your sense of humour !