Если нужно доп.инфа выложу.
Пока не нужно. Возможно телепаты догадаются.
Какую непосредственно нужно инфу?
# uname -a
FreeBSD wifi-zona.dp.ua 8.2-RELEASE-p2 FreeBSD 8.2-RELEASE-p2 #0: Thu Sep 8 15:36:28 EEST 2011 root@:/usr/src/sys/i386/compile/KUHAR i386
a# ifconfig
ed0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
ether 00:00:e8:dc:df:17
inet 10.1.1.2 netmask 0xffffff00 broadcast 10.1.1.255
media: Ethernet autoselect (10baseT/UTP)
vr0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=82808<VLAN_MTU,WOL_UCAST,WOL_MAGIC,LINKSTATE>
ether 00:19:5b:87:4d:e6
inet 46.98.139.93 netmask 0xffffff00 broadcast 46.98.139.255
media: Ethernet autoselect (100baseTX <full-duplex>)
status: active
plip0: flags=8810<POINTOPOINT,SIMPLEX,MULTICAST> metric 0 mtu 1500
ipfw0: flags=8801<UP,SIMPLEX,MULTICAST> metric 0 mtu 65536
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
options=3<RXCSUM,TXCSUM>
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5
inet6 ::1 prefixlen 128
inet 127.0.0.1 netmask 0xff000000
nd6 options=3<PERFORMNUD,ACCEPT_RTADV>
tun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> metric 0 mtu 1492
options=80000<LINKSTATE>
inet 46.98.139.93 --> 212.115.225.19 netmask 0xffffff00
Opened by PID 497
vr0 - сетевая которая принимает инет от провайдера.
# pfctl -sn
No ALTQ support in kernel
ALTQ related functions disabled
nat pass on vr0 inet from 10.0.0.0/8 to any -> 46.98.139.93
a# ipfw show
00050 1207 113641 allow tcp from any to me dst-port 22
00051 971 178800 allow tcp from me 22 to any
00110 104680 7007060 allow ip from any to any via lo0
00120 300 96533 skipto 1000 ip from me to any
00130 0 0 deny icmp from any to any in icmptypes 5,9,13,14,15,16,17
00160 469 64903 skipto 2000 ip from any to me
00200 0 0 skipto 500 ip from any to any via tun0
00300 676 215098 skipto 4500 ip from any to any in
00400 0 0 skipto 450 ip from any to any recv tun0
00420 0 0 divert 1 ip from any to any
00450 0 0 divert 2 ip from any to any
00490 0 0 allow ip from any to any
00500 0 0 skipto 32500 ip from any to any in
00510 0 0 divert 1 ip from any to any
00540 0 0 allow ip from any to any
01000 0 0 allow udp from any 53,7723 to any
01010 0 0 allow tcp from any to any setup keep-state
01020 298 33043 allow udp from any to any keep-state
01100 151 86016 allow ip from any to any
02000 0 0 check-state
02010 10 352 allow icmp from any to any
02020 129 33215 allow tcp from any to any dst-port 80,443
02050 181 8810 deny ip from any to any via tun0
02060 0 0 allow udp from any to any dst-port 53,7723
02100 0 0 deny ip from any to any
05000 676 215098 deny ip from not table(0) to any
05001 0 0 skipto 5010 ip from table(127) to table(126)
05002 0 0 skipto 5030 ip from any to not table(2)
05003 0 0 deny ip from any to not table(1)
05004 0 0 pipe tablearg ip from table(21) to any
05005 0 0 deny ip from any to any
05010 0 0 pipe tablearg ip from table(127) to any
05030 0 0 deny tcp from table(15) to any dst-port 25
05400 0 0 pipe tablearg ip from table(11) to any
32000 0 0 deny ip from any to any
32490 0 0 deny ip from any to any
33000 0 0 pipe tablearg ip from table(126) to table(127)
33001 0 0 skipto 33010 ip from not table(2) to any
33002 0 0 pipe tablearg ip from any to table(20)
33003 0 0 deny ip from any to any
33400 0 0 pipe tablearg ip from any to table(10)
65535 1 64 deny ip from any to any