|
|||||||||||
|
pf with named (WAS RE: VPN with ADSL (dynamics IPs))
From: David Dinin <DDinin(at)resourcecapitalgroup.com>
Date: Fri Jan 31 2003 - 14:30:47 EST
I have another question that's sorta related... I _do_ need to do packet filtering and NAT/rdr stuff. I have a nice pf.conf that does exactly what I want it to, but what I'd really love would be to be able to use the DNS names of hosts on our local network to resolve those things. I've tried writing the rdr lines using DNS names instead of IPs, and I when I reboot the firewall, I get a bunch of nasty messages that pfctl can't resolve the names. Then I read down a few more lines in the boot messages and I notice that named starts up after pfctl loads the rules, so it's easy enough to figure out why _those_ errors are coming up ;) My question is, can you reorder those at startup so that named starts first? What file do you edit to do that? And is it safe to do that? (Will it likely break anything else in the bargain?) And before you ask, we have the resources to run our local DNS server on a separate machine, but not the physical space, so that was out. DNS/DHCP/NAT/pf are all one box (though it's a 1.4 GHz Athlon w/ 512 MB of RAM and a 40 GB hard drive, so it's got plenty of brawn to handle the task :) OpenBSD: keeping vulnerable Microsoft servers protected from the Internet for seven years and counting... :) -d
-----Original Message-----
I don't think that it's possible to setup the VPN using name service, you
have
>===== Original Message From David Dinin <DDinin@resourcecapitalgroup.com>
>Check out dynamic DNS; I know I've seen a bunch of good material on-line, message >to your provider whenever your IP changes. An automated script on the on >your own :) Received on Fri Jan 31 14:39:06 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:32:40 EDT |
||||||||||
|
|||||||||||