natd in a jail

Morgan Reed morgan.s.reed at
Sat Nov 24 12:53:15 UTC 2012

On Sat, Nov 24, 2012 at 5:44 PM, Morgan Reed <morgan.s.reed at> wrote:
> Works like a charm, just one last thing I'd like to get squared away
> here though, currently OpenVPN is using a dynamically created tun
> device, I'd like to have a static /dev/tun0 exist prior to the
> /etc/rc.d/natd start launching (because as it is I have to restart
> natd after the openvpn tunnel comes up), not sure what the best way to
> achieve this is in a jailed environment though.

Scratch that, I definitely need a holiday... natd_enable removed from
rc.conf, appropriate ipfw script being run by openvpn prior to
dropping its privs (by way of the up directive) and it "just works"

More information about the freebsd-stable mailing list