From owner-FreeBSD-tech-jp@jp.freebsd.org  Thu Jul  2 17:00:09 1998
Received: (from daemon@localhost)
	by jaz.jp.freebsd.org (8.8.8+3.0Wbeta13/8.7.3) id RAA23505;
	Thu, 2 Jul 1998 17:00:09 +0900 (JST)
	(envelope-from owner-FreeBSD-tech-jp@jp.FreeBSD.org)
Received: from vcgate3.mei.co.jp (vcgate3.mei.co.jp [202.32.14.53])
	by jaz.jp.freebsd.org (8.8.8+3.0Wbeta13/8.7.3) with ESMTP id RAA23499
	for <FreeBSD-tech-jp@jp.freebsd.org>; Thu, 2 Jul 1998 17:00:07 +0900 (JST)
	(envelope-from kana@saijo.mke.mei.co.jp)
Received: by vcgate3.mei.co.jp (8.9.0/3.7W) with ESMTP
	id QAA21699
	for <FreeBSD-tech-jp@jp.freebsd.org>; Thu, 2 Jul 1998 16:57:02 +0900 (JST)
Received: by vcmei.vanc.mei.co.jp (8.8.7/5.9:4.9:vcmei:980629)
	id QAA23914; Thu, 2 Jul 1998 16:56:03 +0900 (JST)
Received: from mkegate0.mke.mei.co.jp (mkegate0 [157.8.106.130]) by mkews1.ho.mke.mei.co.jp (SMI-8.6/3.5Wpl7) with ESMTP id QAA26804 for <FreeBSD-tech-jp@jp.freebsd.org>; Thu, 2 Jul 1998 16:59:16 +0900
Received: from soft.saijo.mke.mei.co.jp (soft.saijo.mke.mei.co.jp [182.1.2.201])
	by mkegate0.mke.mei.co.jp (8.8.8/3.6W-980520) with ESMTP id QAA13882
	for <FreeBSD-tech-jp@jp.freebsd.org>; Thu, 2 Jul 1998 16:59:56 +0900 (JST)
Received: from vepc03.saijo.mke.mei.co.jp (vepc03 [182.1.13.14])
	by soft.saijo.mke.mei.co.jp (8.8.8/3.6W-980521) with ESMTP id RAA08255
	for <FreeBSD-tech-jp@jp.freebsd.org>; Thu, 2 Jul 1998 17:05:50 +0900 (JST)
Received: from localhost by vepc03.saijo.mke.mei.co.jp (8.8.8/3.4W4)
	id RAA00311; Thu, 2 Jul 1998 17:03:06 +0900 (JST)
To: FreeBSD-tech-jp@jp.freebsd.org
In-Reply-To: Your message of "Thu, 2 Jul 1998 13:40:00 +0900"
	<199807020440.NAA06841@ns.totalware.gifu.gifu.jp>
References: <199807020440.NAA06841@ns.totalware.gifu.gifu.jp>
X-Mailer: Mew version 1.93b17 on Emacs 19.34 / Mule 2.3 (SUETSUMUHANA)
Mime-Version: 1.0
Content-Type: Text/Plain; charset=iso-2022-jp
Content-Transfer-Encoding: 7bit
Message-Id: <19980702170306A.kana@saijo.mke.mei.co.jp>
Date: Thu, 02 Jul 1998 17:03:06 +0900
From: Masanori Kanaoka <kana@saijo.mke.mei.co.jp>
X-Dispatcher: imput version 980219
Lines: 87
Reply-To: FreeBSD-tech-jp@jp.freebsd.org
Precedence: bulk
X-Distribute: distribute [version 2.1 (Alpha) patchlevel=24e+ JFUG special]
X-Sequence: FreeBSD-tech-jp 1610
Subject: [FreeBSD-tech-jp 1610] Re: ftp over 2.2-stable natd
Errors-To: owner-FreeBSD-tech-jp@jp.freebsd.org
Sender: owner-FreeBSD-tech-jp@jp.freebsd.org

$B6b2,!w>>2<<w$G$9!#(B

$ $B$O$d$7$G$9!#(B

$  jul. 1 $B$"$?$j$KJQ99$5$l$?!"(B2.2-stable $B$N(B
$ /usr/src/sys/netinet/ip* $B$"$?$j$N1F6A$G$7$g$&$+!"(Bnatd $B7PM3$N(B
$ ftp $B$,<:GT$9$k$h$&$G$9!#(B

-----------< cvs-all@FreeBSD.ORG $B$N(B mail $B$N0zMQ(B >---------------
julian      1998/06/30 18:38:40 PDT

  Modified files:        (Branch: RELENG_2_2)
    sys/netinet          in.h ip_divert.c ip_fw.c ip_input.c 
                         ip_output.c ip_var.h 
  Log:
  MFC: merge in some minor cleanups for IP divert
  
  Revision  Changes    Path
  1.22.2.5  +3 -2      src/sys/netinet/in.h
  1.1.2.10  +10 -29    src/sys/netinet/ip_divert.c
  1.51.2.15 +25 -26    src/sys/netinet/ip_fw.c
  1.50.2.16 +8 -13     src/sys/netinet/ip_input.c
  1.44.2.9  +3 -3      src/sys/netinet/ip_output.c
  1.24.2.5  +2 -8      src/sys/netinet/ip_var.h

-----------< cvs-all@FreeBSD.ORG $B$N(B mail $B$N0zMQ(B >---------------

$B$3$l$N1F6A$G$7$g$&$+!#(B

$ $B$A$g$C$HA0$N(B .../netinet/* $B$KLa$7$F!"%+!<%M%k$r:n$jD>$9$H(B
$ 500KB $B0L$N(B ftp $B$G$bDL$j$^$9$N$G(B .../netinet/* $B$N1F6A$H$K$i$s$G(B
$ $B$$$k$N$G$9$,!"$I$J$?$+DI;n$r$*4j$$$G$-$k$H$&$l$7$$$G$9!#(B

$BDI;n$7$^$7$?!#$?$7$+$K!"(Bftp $B$,ESCf$G@Z$l$^$9$M!#(B

[ $B@\B3>uBV(B ]

 current                      stable                              host1
   3.0-current              2.2.6-stable                         solrais2.5.1
de0(192.162.1.2) -- fxp0 (168.192.1.1) ed1(AAA.BBB.CCC.DDD)---(AAA.BBB.CCC.FFF)
  de0 -- fxp0 $B$O!"(Bcross cable $B@\B3!"$=$NB>$O(B HUB $B$K$h$k@\B3(B            

stable machine $B$K$F(B
1. /kernel(1998.7.2 cvsup) $B$K0J2<$N(B option $B$rDI2C$7$F:F9=C[(B
	(/kernel $B0J30$O!"(B 1998.6.29 $B$K(B make world $B$7$?$b$N(B)
	options         IPFIREWALL
	options         IPDIVERT
	options         IPFIREWALL_VERBOSE

2. /etc/rc.conf modify

	firewall_enable,gateway_enable,
	forward_sourceroute,accept_sourceroute $B$r(B NO -> YES $B$XJQ99(B

3. /etc/rc.firewall modify

	# cp /etc/rc.firewall /etc/firewall.orig
	# vi /etc/rc.firewall

		# !/bin/sh
		/sbin/ipfw -f flush
		/sbin/ipfw add divert natd all from any to any via ed1
		/sbin/ipfw add pass all from any to any

4. /etc/services modify

	# vi /etc/services
	
		natd            6668/divert     #Network Address Translation socket

5. restart

	# shutdown -r now

6. confirmation 

current machine $B$K$F(B

	AAA.BBB.CCC.FFF $B$K!"Bg$-$$%U%!%$%k$r(B ftp $B$G(B put $B$9$k$,!"(B
	$BESCf$G$-$l$k!#(B 
	
$B!t(B forward_sourceroute,accept_sourceroute $B$r(B YES $B$K$7$J$$$H$$$1$J$$$N$K!"(B
$B!t5$$,IU$+$J$/$F!"7k9=;~4V$r$H$i$l$F$7$^$$$^$7$?!#(B(^^;;;

------ $B>>2<<wEE;R9)6H3t<02q<R(B  $B1GA|3+H/%;%s%?!<!!1GA|5;=QIt(B ----
$B!!6b2,!!@57{!!!!!!(BTEL:0897-56-1111($BFb(B518)  FAX:0897-56-8142
---------------- Masanori Kanaoka <kana@saijo.mke.mei.co.jp>----
