NATD and Address Redirection

Jim Durham durham at jcdurham.com
Mon Jul 28 14:04:20 PDT 2003


On Monday 28 July 2003 06:26 am, you wrote:
> On Sun, 27 Jul 2003, Jim Durham wrote:
> > On Sunday 27 July 2003 03:10 am, Wouter Clarie wrote:
> > > Yes, that's what I meant. It should work, since it does here.
> > > VNC Server on the internal network, accessed from outside.
> >
> > Interesting. Is your setup using redirect_address in a natd.conf
> > file?
>
> No.
>
> > What version of FreeBSD are you running?
>
> I was afraid you were going to ask this question ;) I'm not using
> FreeBSD but OpenBSD. I wasn't actually telling you that natd in
> FreeBSD will be able to do it (which it really should), but that it
> is perfectly possible to run a VNC Server behind NAT, without an
> application proxy. OpenBSD pf proves that.

I wonder if the OpenBSD natd is the same code? I don't have any Open 
BSD machines but it might be interesting to look.
>

OK.... well, we have tried same-ports, use_sockets, ..everything we 
can think of and it does not work with VNC....but there's more....

If we substitute a FreeBSD box with vncserver for the windows box, 
then I actually can see the beginning of a screen forming, about 10 
scan lines. Eventually, the connection times out, but when it does it 
delivers another 10 scan lines of so of screen.  That kind of 
behavior would suggest to me that the first bufferof the screen stuff 
is sent out, but no ack comes back and, when the connection finally 
times out, you get another packet bufferas it dumps the connection. 

By the way, SSH runs fine to that inside machine from the 'net.

-Jim



More information about the freebsd-hackers mailing list