From owner-FreeBSD-net-jp@jp.freebsd.org  Sun Nov 16 23:34:59 1997
Received: by jaz.jp.freebsd.org (8.8.8+2.7Wbeta7/8.7.3) id XAA27874
	Sun, 16 Nov 1997 23:34:59 +0900 (JST)
Received: by jaz.jp.freebsd.org (8.8.8+2.7Wbeta7/8.7.3) with ESMTP id XAA27869
	for <freebsd-net-jp@jp.freebsd.org>; Sun, 16 Nov 1997 23:34:57 +0900 (JST)
Received: from nocs3.noc.titech.ac.jp by nocs1.noc.titech.ac.jp (8.8.8/TM2.1-bn3.3)
	id XAA14868; Sun, 16 Nov 1997 23:34:56 +0900 (JST)
Received: from noc.titech.ac.jp by nocs3.noc.titech.ac.jp (8.7+2.6Wbeta3/noc-sub1.0)
	id XAA22287; Sun, 16 Nov 1997 23:34:56 +0900 (JST)
Message-Id: <199711161434.XAA22287@nocs3.noc.titech.ac.jp>
To: FreeBSD-net-jp@jp.freebsd.org
X-Mailer: Mew version 1.54 on Emacs 19.28.1, Mule 2.3
Mime-Version: 1.0
Content-Type: Text/Plain; charset=iso-2022-jp
Content-Transfer-Encoding: 7bit
Date: Sun, 16 Nov 1997 23:34:55 +0900
From: IIJIMA Akihiro <aki@noc.titech.ac.jp>
Reply-To: FreeBSD-net-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute [version 2.1 (Alpha) patchlevel=20]
X-Sequence: FreeBSD-net-jp 340
Subject: [FreeBSD-net-jp 340] Re: Packet Folter(Router or Firewall)
Errors-To: owner-FreeBSD-net-jp@jp.freebsd.org
Sender: owner-FreeBSD-net-jp@jp.freebsd.org

>            FireWall(DNS,WWW,SMTP,POP,Proxy)
> $BFbIt$+$i$O!"(BProxy(Squid)$B$r;H$C$F(Bhttp$B$H(Bftp$B$N$_$r5v2D$7$^$9!#(B
> $B30It$+$i$O!"(BFireWall$B$G(Bhttp$B$H(Bftp$B$N$_$r5v2D$7$?$$$H9M$($F$$$^$9!#(B

$B$3$l$@$1$J$i(B 
> $B$3$N$h$&$J;v$r$9$k$N$K!"(Brouter$B$G%U%#%k%?$r$+$1$k$N$,NI$$$G$7$g$&$+!#(B
> $B$=$l$H$b!"(BFireWall$B$G(BIPFW$B$r;H$&$N$,NI$$$G$7$g$&$+!#(B

FireWall$B%^%7%s$G(B ip_forwarding$B$r(B off (gateway=no) $B$K$9$k$@$1$G(B
$B==J,$@$H;W$&$1$I!#(B

$B$b$A$m$s(B router$B$G(B $B%U%#%k%?$r$+$1$F$b$$$$$1$I(B $B30It%;%0%a%s%H$K(B
$B%k!<%?$H(B FW$B0J30$NB>$N%^%7%s$,B8:_$7$J$$$J$i(B $B%U%#%k%?$+$1$F$b0UL#$J$$$H(B
$B;W$&$J!#(B

$B$?$@(B
> # $B%a!<%k$NG[Aw$OIaDL$K9T$$$?$$$G$9!#(B
$B$H8@$o$l$k$H(B $BIaDL$C$F$I$&$$$&$N(B  $B$H5U$KJ9$-$?$/$J$k!#(B

$B$I$&$;(B $B30$+$iCf$N%a!<%k$O(B FW$B$G<u$1$k$s$G$7$g!)(B
$B$=$l$J$i(B gateway=off $B$G(BOK$B$@$h$M!#(B

$BCf$+$i30$N%a!<%k$,(B
$BI,$:0lEY(B FW$B$KAw$j$D$1$F(B $B$=$l$+$i30It$K=P$F9T$/$N$J$i(B
$B$3$l$b(B gateway=off $B$G(BOK$B$@$h$M!#(B

$BCf$+$i$N%a!<%k$,(B $BD>@\30$K=P$F9T$C$FM_$7$$(B $B$H$$$&>l9g$O(B
gateway=off $B$G$O(B $B%Q%1%C%H$,Cf7Q$5$l$J$$$N$G(B $B$@$a$@$1$I!"(B
$B$I$N$_$A(B $BCf$,(B private IP$B$J$i(B NAT$BF~$l$J$$$+$.$j(B $B$@$a$@$h$M!#(B

$B$@$+$i7k6I(B gateway=off $B$G1?MQ$9$k$N$,(B $B0lHV$o$+$j$d$9$$$74JC1!#(B
--
$BEl5~9)6HBg3X(B $BAm9g>pJs=hM}%;%s%?!<(B $B%M%C%H%o!<%/%7%9%F%`1?MQ3](B
	$BHSEg(B $B><Gn(B (Akihiro Iijima) aki@noc.titech.ac.jp
