> покажите
> dmesg
> dmesg -a
> включите расширенные логи mpd, задействуте ipfw nat или pf nat вместо natd
> (я так полагаю это он на 8668 слушает?), второй по скорости
> быстрее.
> 426 ?? Ss 0:00.76 /sbin/routed
> -q - это для чего?
> покажите /etc/rc.conf уменьшил MTU до 576, не помогло.
вывод dmesg:
Copyright (c) 1992-2010 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
The Regents of the University of California. All rights reserved.
FreeBSD is a registered trademark of The FreeBSD Foundation.
FreeBSD 8.1-RELEASE #1: Sat Dec 11 22:24:35 MSK 2010
server@server:/usr/obj/usr/src/sys/MYKERNEL i386
Timecounter "i8254" frequency 1193182 Hz quality 0
CPU: Intel(R) Celeron(R) CPU 420 @ 1.60GHz (1600.01-MHz 686-class CPU)
Origin = "GenuineIntel" Id = 0x10661 Family = 6 Model = 16 Stepping = 1
Features=0xafebfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,TM,PBE>
Features2=0xe31d<SSE3,DTES64,MON,DS_CPL,TM2,SSSE3,CX16,xTPR,PDCM>
AMD Features=0x20100000<NX,LM>
AMD Features2=0x1<LAHF>
TSC: P-state invariant
real memory = 1065287680 (1015 MB)
avail memory = 1032347648 (984 MB)
ACPI APIC Table: <JETWAY AWRDACPI>
ioapic0 <Version 2.0> irqs 0-23 on motherboard
acpi0: <JETWAY AWRDACPI> on motherboard
acpi0: [ITHREAD]
acpi0: Power Button (fixed)
acpi0: reservation of 0, 3f7f0000 (3) failed
Timecounter "ACPI-fast" frequency 3579545 Hz quality 1000
acpi_timer0: <24-bit timer at 3.579545MHz> port 0x408-0x40b on acpi0
cpu0: <ACPI CPU> on acpi0
acpi_button0: <Power Button> on acpi0
pcib0: <ACPI Host-PCI bridge> port 0xcf8-0xcff on acpi0
pci0: <ACPI PCI bus> on pcib0
vgapci0: <VGA-compatible display> port 0xff00-0xff07 mem 0xfdf00000-0xfdf7ffff,0xd0000000-0xdfffffff,0xfdf80000-0xfdfbffff irq 16 at device 2.0 on pci0
pcib1: <ACPI PCI-PCI bridge> irq 16 at device 28.0 on pci0
pci1: <ACPI PCI bus> on pcib1
uhci0: <Intel 82801G (ICH7) USB controller USB-A> port 0xfe00-0xfe1f irq 23 at device 29.0 on pci0
uhci0: [ITHREAD]
usbus0: <Intel 82801G (ICH7) USB controller USB-A> on uhci0
uhci1: <Intel 82801G (ICH7) USB controller USB-B> port 0xfd00-0xfd1f irq 19 at device 29.1 on pci0
uhci1: [ITHREAD]
usbus1: <Intel 82801G (ICH7) USB controller USB-B> on uhci1
uhci2: <Intel 82801G (ICH7) USB controller USB-C> port 0xfc00-0xfc1f irq 18 at device 29.2 on pci0
uhci2: [ITHREAD]
usbus2: <Intel 82801G (ICH7) USB controller USB-C> on uhci2
uhci3: <Intel 82801G (ICH7) USB controller USB-D> port 0xfb00-0xfb1f irq 16 at device 29.3 on pci0
uhci3: [ITHREAD]
usbus3: <Intel 82801G (ICH7) USB controller USB-D> on uhci3
ehci0: <Intel 82801GB/R (ICH7) USB 2.0 controller> mem 0xfdfff000-0xfdfff3ff irq 23 at device 29.7 on pci0
ehci0: [ITHREAD]
usbus4: EHCI version 1.0
usbus4: <Intel 82801GB/R (ICH7) USB 2.0 controller> on ehci0
pcib2: <ACPI PCI-PCI bridge> at device 30.0 on pci0
pci2: <ACPI PCI bus> on pcib2
vr0: <VIA VT6105 Rhine III 10/100BaseTX> port 0xdc00-0xdcff mem 0xfdeff000-0xfdeff0ff irq 16 at device 1.0 on pci2
vr0: Quirks: 0x0
vr0: Revision: 0x8b
miibus0: <MII bus> on vr0
ukphy0: <Generic IEEE 802.3u media interface> PHY 1 on miibus0
ukphy0: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
vr0: Ethernet address: 00:26:5a:13:d5:60
vr0: [ITHREAD]
ste0: <Sundance ST201 10/100BaseTX> port 0xdf00-0xdf7f mem 0xfdefe000-0xfdefe1ff irq 17 at device 2.0 on pci2
miibus1: <MII bus> on ste0
ukphy1: <Generic IEEE 802.3u media interface> PHY 0 on miibus1
ukphy1: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
ste0: Ethernet address: 00:26:18:eb:bf:96
ste0: [ITHREAD]
rl0: <RealTek 8139 10/100BaseTX> port 0xda00-0xdaff mem 0xfdefd000-0xfdefd0ff irq 19 at device 4.0 on pci2
miibus2: <MII bus> on rl0
rlphy0: <RealTek internal media interface> PHY 0 on miibus2
rlphy0: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
rl0: Ethernet address: 00:30:18:a2:35:02
rl0: [ITHREAD]
isab0: <PCI-ISA bridge> at device 31.0 on pci0
isa0: <ISA bus> on isab0
atapci0: <Intel ICH7 SATA300 controller> port 0x1f0-0x1f7,0x3f6,0x170-0x177,0x376,0xf800-0xf80f at device 31.2 on pci0
ata0: <ATA channel 0> on atapci0
ata0: [ITHREAD]
ata1: <ATA channel 1> on atapci0
ata1: [ITHREAD]
pci0: <serial bus, SMBus> at device 31.3 (no driver attached)
acpi_tz0: <Thermal Zone> on acpi0
atrtc0: <AT realtime clock> port 0x70-0x73 irq 8 on acpi0
uart0: <16550 or compatible> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0
uart0: [FILTER]
atkbdc0: <Keyboard controller (i8042)> port 0x60,0x64 irq 1 on acpi0
atkbd0: <AT Keyboard> irq 1 on atkbdc0
kbd0 at atkbd0
atkbd0: [GIANT-LOCKED]
atkbd0: [ITHREAD]
orm0: <ISA Option ROMs> at iomem 0xcc000-0xd3fff,0xef000-0xeffff pnpid ORM0000 on isa0
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
p4tcc0: <CPU Frequency Thermal Control> on cpu0
Timecounter "TSC" frequency 1600011424 Hz quality 800
Timecounters tick every 1.000 msec
ipfw2 (+ipv6) initialized, divert enabled, nat enabled, rule-based forwarding enabled, default to deny, logging disabled
load_dn_sched dn_sched FIFO loaded
load_dn_sched dn_sched PRIO loaded
load_dn_sched dn_sched QFQ loaded
load_dn_sched dn_sched RR loaded
load_dn_sched dn_sched WF2Q+ loaded
usbus0: 12Mbps Full Speed USB v1.0
usbus1: 12Mbps Full Speed USB v1.0
usbus2: 12Mbps Full Speed USB v1.0
usbus3: 12Mbps Full Speed USB v1.0
usbus4: 480Mbps High Speed USB v2.0
ad0: 953869MB <Seagate ST31000520AS CC32> at ata0-master UDMA100 SATA
ugen0.1: <Intel> at usbus0
uhub0: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus0
ugen1.1: <Intel> at usbus1
uhub1: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus1
ugen2.1: <Intel> at usbus2
uhub2: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus2
ugen3.1: <Intel> at usbus3
uhub3: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus3
ugen4.1: <Intel> at usbus4
uhub4: <Intel EHCI root HUB, class 9/0, rev 2.00/1.00, addr 1> on usbus4
acd0: DVDR <PIONEER DVD-RW DVR-112D/1.21> at ata1-master UDMA66 SATA
Root mount waiting for: usbus4 usbus3 usbus2 usbus1 usbus0
uhub0: 2 ports with 2 removable, self powered
uhub1: 2 ports with 2 removable, self powered
uhub2: 2 ports with 2 removable, self powered
uhub3: 2 ports with 2 removable, self powered
Root mount waiting for: usbus4
Root mount waiting for: usbus4
Root mount waiting for: usbus4
uhub4: 8 ports with 8 removable, self powered
Trying to mount root from ufs:/dev/ad0s1a
rl0: link state changed to UP
nd6_setmtu0: new link MTU on ng0 (576) is too small for IPv6
вывод dmesg -a
Copyright (c) 1992-2010 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
The Regents of the University of California. All rights reserved.
FreeBSD is a registered trademark of The FreeBSD Foundation.
FreeBSD 8.1-RELEASE #1: Sat Dec 11 22:24:35 MSK 2010
server@server:/usr/obj/usr/src/sys/MYKERNEL i386
Timecounter "i8254" frequency 1193182 Hz quality 0
CPU: Intel(R) Celeron(R) CPU 420 @ 1.60GHz (1600.01-MHz 686-class CPU)
Origin = "GenuineIntel" Id = 0x10661 Family = 6 Model = 16 Stepping = 1
Features=0xafebfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,TM,PBE>
Features2=0xe31d<SSE3,DTES64,MON,DS_CPL,TM2,SSSE3,CX16,xTPR,PDCM>
AMD Features=0x20100000<NX,LM>
AMD Features2=0x1<LAHF>
TSC: P-state invariant
real memory = 1065287680 (1015 MB)
avail memory = 1032347648 (984 MB)
ACPI APIC Table: <JETWAY AWRDACPI>
ioapic0 <Version 2.0> irqs 0-23 on motherboard
acpi0: <JETWAY AWRDACPI> on motherboard
acpi0: [ITHREAD]
acpi0: Power Button (fixed)
acpi0: reservation of 0, 3f7f0000 (3) failed
Timecounter "ACPI-fast" frequency 3579545 Hz quality 1000
acpi_timer0: <24-bit timer at 3.579545MHz> port 0x408-0x40b on acpi0
cpu0: <ACPI CPU> on acpi0
acpi_button0: <Power Button> on acpi0
pcib0: <ACPI Host-PCI bridge> port 0xcf8-0xcff on acpi0
pci0: <ACPI PCI bus> on pcib0
vgapci0: <VGA-compatible display> port 0xff00-0xff07 mem 0xfdf00000-0xfdf7ffff,0xd0000000-0xdfffffff,0xfdf80000-0xfdfbffff irq 16 at device 2.0 on pci0
pcib1: <ACPI PCI-PCI bridge> irq 16 at device 28.0 on pci0
pci1: <ACPI PCI bus> on pcib1
uhci0: <Intel 82801G (ICH7) USB controller USB-A> port 0xfe00-0xfe1f irq 23 at device 29.0 on pci0
uhci0: [ITHREAD]
usbus0: <Intel 82801G (ICH7) USB controller USB-A> on uhci0
uhci1: <Intel 82801G (ICH7) USB controller USB-B> port 0xfd00-0xfd1f irq 19 at device 29.1 on pci0
uhci1: [ITHREAD]
usbus1: <Intel 82801G (ICH7) USB controller USB-B> on uhci1
uhci2: <Intel 82801G (ICH7) USB controller USB-C> port 0xfc00-0xfc1f irq 18 at device 29.2 on pci0
uhci2: [ITHREAD]
usbus2: <Intel 82801G (ICH7) USB controller USB-C> on uhci2
uhci3: <Intel 82801G (ICH7) USB controller USB-D> port 0xfb00-0xfb1f irq 16 at device 29.3 on pci0
uhci3: [ITHREAD]
usbus3: <Intel 82801G (ICH7) USB controller USB-D> on uhci3
ehci0: <Intel 82801GB/R (ICH7) USB 2.0 controller> mem 0xfdfff000-0xfdfff3ff irq 23 at device 29.7 on pci0
ehci0: [ITHREAD]
usbus4: EHCI version 1.0
usbus4: <Intel 82801GB/R (ICH7) USB 2.0 controller> on ehci0
pcib2: <ACPI PCI-PCI bridge> at device 30.0 on pci0
pci2: <ACPI PCI bus> on pcib2
vr0: <VIA VT6105 Rhine III 10/100BaseTX> port 0xdc00-0xdcff mem 0xfdeff000-0xfdeff0ff irq 16 at device 1.0 on pci2
vr0: Quirks: 0x0
vr0: Revision: 0x8b
miibus0: <MII bus> on vr0
ukphy0: <Generic IEEE 802.3u media interface> PHY 1 on miibus0
ukphy0: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
vr0: Ethernet address: 00:26:5a:13:d5:60
vr0: [ITHREAD]
ste0: <Sundance ST201 10/100BaseTX> port 0xdf00-0xdf7f mem 0xfdefe000-0xfdefe1ff irq 17 at device 2.0 on pci2
miibus1: <MII bus> on ste0
ukphy1: <Generic IEEE 802.3u media interface> PHY 0 on miibus1
ukphy1: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
ste0: Ethernet address: 00:26:18:eb:bf:96
ste0: [ITHREAD]
rl0: <RealTek 8139 10/100BaseTX> port 0xda00-0xdaff mem 0xfdefd000-0xfdefd0ff irq 19 at device 4.0 on pci2
miibus2: <MII bus> on rl0
rlphy0: <RealTek internal media interface> PHY 0 on miibus2
rlphy0: 10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto
rl0: Ethernet address: 00:30:18:a2:35:02
rl0: [ITHREAD]
isab0: <PCI-ISA bridge> at device 31.0 on pci0
isa0: <ISA bus> on isab0
atapci0: <Intel ICH7 SATA300 controller> port 0x1f0-0x1f7,0x3f6,0x170-0x177,0x376,0xf800-0xf80f at device 31.2 on pci0
ata0: <ATA channel 0> on atapci0
ata0: [ITHREAD]
ata1: <ATA channel 1> on atapci0
ata1: [ITHREAD]
pci0: <serial bus, SMBus> at device 31.3 (no driver attached)
acpi_tz0: <Thermal Zone> on acpi0
atrtc0: <AT realtime clock> port 0x70-0x73 irq 8 on acpi0
uart0: <16550 or compatible> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0
uart0: [FILTER]
atkbdc0: <Keyboard controller (i8042)> port 0x60,0x64 irq 1 on acpi0
atkbd0: <AT Keyboard> irq 1 on atkbdc0
kbd0 at atkbd0
atkbd0: [GIANT-LOCKED]
atkbd0: [ITHREAD]
orm0: <ISA Option ROMs> at iomem 0xcc000-0xd3fff,0xef000-0xeffff pnpid ORM0000 on isa0
sc0: <System console> at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0
p4tcc0: <CPU Frequency Thermal Control> on cpu0
Timecounter "TSC" frequency 1600011424 Hz quality 800
Timecounters tick every 1.000 msec
ipfw2 (+ipv6) initialized, divert enabled, nat enabled, rule-based forwarding enabled, default to deny, logging disabled
load_dn_sched dn_sched FIFO loaded
load_dn_sched dn_sched PRIO loaded
load_dn_sched dn_sched QFQ loaded
load_dn_sched dn_sched RR loaded
load_dn_sched dn_sched WF2Q+ loaded
usbus0: 12Mbps Full Speed USB v1.0
usbus1: 12Mbps Full Speed USB v1.0
usbus2: 12Mbps Full Speed USB v1.0
usbus3: 12Mbps Full Speed USB v1.0
usbus4: 480Mbps High Speed USB v2.0
ad0: 953869MB <Seagate ST31000520AS CC32> at ata0-master UDMA100 SATA
ugen0.1: <Intel> at usbus0
uhub0: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus0
ugen1.1: <Intel> at usbus1
uhub1: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus1
ugen2.1: <Intel> at usbus2
uhub2: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus2
ugen3.1: <Intel> at usbus3
uhub3: <Intel UHCI root HUB, class 9/0, rev 1.00/1.00, addr 1> on usbus3
ugen4.1: <Intel> at usbus4
uhub4: <Intel EHCI root HUB, class 9/0, rev 2.00/1.00, addr 1> on usbus4
acd0: DVDR <PIONEER DVD-RW DVR-112D/1.21> at ata1-master UDMA66 SATA
Root mount waiting for: usbus4 usbus3 usbus2 usbus1 usbus0
uhub0: 2 ports with 2 removable, self powered
uhub1: 2 ports with 2 removable, self powered
uhub2: 2 ports with 2 removable, self powered
uhub3: 2 ports with 2 removable, self powered
Root mount waiting for: usbus4
Root mount waiting for: usbus4
Root mount waiting for: usbus4
uhub4: 8 ports with 8 removable, self powered
Trying to mount root from ufs:/dev/ad0s1a
Setting hostuuid: 5fd9978f-04cd-11e0-b2ed-002618ebbf96.
Setting hostid: 0x37cb2005.
Entropy harvesting:
interrupts
ethernet
point_to_point
kickstart
.
Starting file system checks:
/dev/ad0s1a: FILE SYSTEM CLEAN; SKIPPING CHECKS
/dev/ad0s1a: clean, 50520605 free (4141 frags, 6314558 blocks, 0.0% fragmentation)
/dev/ad0s3d: FILE SYSTEM CLEAN; SKIPPING CHECKS
/dev/ad0s3d: clean, 150296127 free (49871 frags, 18780782 blocks, 0.0% fragmentation)
/dev/ad0s4d: FILE SYSTEM CLEAN; SKIPPING CHECKS
/dev/ad0s4d: clean, 266657759 free (48903 frags, 33326107 blocks, 0.0% fragmentation)
Mounting local file systems:
.
Setting hostname: server
.
Starting Network: lo0 vr0 ste0 rl0.
lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
options=3<RXCSUM,TXCSUM>
inet6 fe80::1%lo0 prefixlen 64 scopeid 0x5
inet6 ::1 prefixlen 128
inet 127.0.0.1 netmask 0xff000000
nd6 options=3<PERFORMNUD,ACCEPT_RTADV>
vr0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=82808<VLAN_MTU,WOL_UCAST,WOL_MAGIC,LINKSTATE>
ether 00:26:5a:13:d5:60
inet 192.168.1.1 netmask 0xffffff00 broadcast 192.168.1.255
media: Ethernet autoselect (100baseTX <full-duplex>)
status: active
ste0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=82008<VLAN_MTU,WOL_MAGIC,LINKSTATE>
ether 00:26:18:eb:bf:96
inet 192.168.2.1 netmask 0xffffff00 broadcast 192.168.2.255
media: Ethernet autoselect (none)
status: no carrier
rl0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 mtu 1500
options=8<VLAN_MTU>
ether 00:30:18:a2:35:02
inet XX.XX.XX.XX netmask 0xfffffffc broadcast XX.XX.XX.XX
media: Ethernet autoselect (none)
status: no carrier
add net default: gateway YY.YY.YY.YY
Additional routing options:
IP gateway=YES
.
Starting devd.
Starting routed.
routed: Send bcast sendto(rl0, XX.XX.XX.XX.520): Permission denied
routed: Send bcast sendto(ste0, 192.168.2.255.520): Permission denied
routed: Send bcast sendto(vr0, 192.168.1.255.520): Permission denied
Flushed all rules.
00100 allow ip from any to any via lo0
00200 deny ip from any to 127.0.0.0/8
00300 deny ip from 127.0.0.0/8 to any
[: NO: bad number
Accounting cleared.
09999 skipto 10000 ip from any to any via rl0
09999 skipto 11000 ip from any to any via vr0
09999 skipto 12000 ip from any to any via ste0
09999 skipto 13000 ip from any to any via ng0
09999 skipto 65000 ip from any to any
10110 deny ip from any to table(2) in recv rl0
10110 deny ip from table(2) to any in recv rl0
10110 deny ip from table(1) to any in recv rl0
10120 deny icmp from any to any in icmptypes 5,9,13,14,15,16,17 recv rl0
10510 divert 8668 ip from 192.168.1.0/24 to any out xmit rl0
10520 divert 8668 ip from 192.168.0.0/24 to any out xmit rl0
10530 divert 8668 ip from any to XX.XX.XX.XX in recv rl0
10920 allow gre from XX.XX.XX.XX to any out xmit rl0
10920 allow gre from any to XX.XX.XX.XX in recv rl0
10930 check-state
10940 allow tcp from me to any out xmit rl0 setup keep-state
10940 allow udp from me to any out xmit rl0 keep-state
10940 allow icmp from any to any via rl0 keep-state
10990 allow ip from any to 192.168.1.0/24 via rl0
10990 allow ip from any to 192.168.0.0/24 via rl0
10998 deny log logamount 10 ip from any to any via rl0
11110 deny ip from not 192.168.1.0/24 to any in recv vr0
11520 fwd 192.168.1.1,3128 tcp from 192.168.1.0/24 to any dst-port 23,70,80,210,280,488,591,777,2041,2042,5190,9080,9443 recv vr0
11910 allow ip from any to 192.168.1.0/24 out xmit vr0
11910 allow ip from 192.168.1.0/24 to any in recv vr0
11920 allow ip from any to 255.255.255.255 via vr0
11920 allow ip from 255.255.255.255 to any via vr0
11998 deny log logamount 10 ip from any to any via vr0
12110 deny ip from not 192.168.2.0/24 to any in recv ste0
12910 allow ip from 192.168.2.0/24 to 192.168.2.1 in recv ste0
12910 allow ip from 192.168.2.1 to 192.168.2.0/24 out xmit ste0
12920 allow ip from any to 255.255.255.255 via ste0
12920 allow ip from 255.255.255.255 to any via ste0
12998 deny ip from any to any via ste0
13110 deny ip from not 192.168.0.0/24 to any in recv ng0
13910 allow ip from any to 192.168.0.0/24 out xmit ng0
13910 allow ip from 192.168.0.0/24 to any in recv ng0
13920 allow ip from any to 255.255.255.255 via ng0
13920 allow ip from 255.255.255.255 to any via ng0
13998 deny log logamount 10 ip from any to any via ng0
Accounting cleared.
Firewall rules loaded.
Starting natd.
Loading /lib/libalias_cuseeme.so
Loading /lib/libalias_ftp.so
Loading /lib/libalias_irc.so
Loading /lib/libalias_nbt.so
Loading /lib/libalias_pptp.so
Loading /lib/libalias_skinny.so
Loading /lib/libalias_smedia.so
Jan 15 18:15:26 natd[857]: Aliasing to XX.XX.XX.XX, mtu 1500 bytes
ELF ldconfig path: /lib /usr/lib /usr/lib/compat /usr/local/lib /usr/local/lib/mysql
a.out ldconfig path: /usr/lib/aout /usr/lib/compat/aout
Creating and/or trimming log files
.
Starting syslogd.
Starting rpcbind.
Clearing /tmp (X related).
Jan 15 18:15:27 server routed[622]: sendto(ste0, 224.0.0.2): Permission denied
ipfw: 11998 Deny ICMP:10.0 192.168.1.1 224.0.0.2 out via vr0
Jan 15 18:15:27 server routed[622]: sendto(vr0, 224.0.0.2): Permission denied
Starting mpd5.
Updating motd:
rl0: link state changed to UP
ipfw: 11998 Deny P:2 192.168.1.1 224.0.0.22 out via vr0
.
Starting dhcpd.
Starting proftpd.
Starting squid.
2011/01/15 18:15:30| WARNING: (B) '::/0' is a subnetwork of (A) '::/0'
2011/01/15 18:15:30| WARNING: because of this '::/0' is ignored to keep splay tree searching predictable
2011/01/15 18:15:30| WARNING: You should probably remove '::/0' from the ACL named 'all'
Starting mysql.
Jan 15 18:15:30 server routed[622]: sendto(ste0, 224.0.0.2): Permission denied
ipfw: 11998 Deny ICMP:10.0 192.168.1.1 224.0.0.2 out via vr0
Jan 15 18:15:30 server routed[622]: sendto(vr0, 224.0.0.2): Permission denied
Starting bruteblockd.
Performing sanity check on apache22 configuration:
Jan 15 18:15:33 server routed[622]: sendto(ste0, 224.0.0.2): Permission denied
ipfw: 11998 Deny ICMP:10.0 192.168.1.1 224.0.0.2 out via vr0
Jan 15 18:15:33 server routed[622]: sendto(vr0, 224.0.0.2): Permission denied
Syntax OK
Starting apache22.
Configuring syscons:
keymap
blanktime
.
Starting sshd.
eval: /usr/sbin/sendmail: not found
eval: /usr/sbin/sendmail: not found
Starting cron.
Local package initialization:
portsentry (
tcp
udp
)
.
Starting background file system checks in 60 seconds.
Sat Jan 15 18:15:34 MSK 2011
ipfw: 10998 Deny UDP 0.0.0.0:68 255.255.255.255:67 in via rl0
ipfw: 10998 Deny UDP 0.0.0.0:68 255.255.255.255:67 in via rl0
ipfw: 10998 Deny UDP 0.0.0.0:68 255.255.255.255:67 in via rl0
ipfw: 10998 Deny UDP 0.0.0.0:68 255.255.255.255:67 in via rl0
ipfw: 10998 Deny UDP 0.0.0.0:68 255.255.255.255:67 in via rl0
ipfw: limit 10 reached on entry 10998
Jan 15 22:15:40 server dhcpd: Remove host declaration webcam or remove 192.168.1.200
Jan 15 22:15:40 server dhcpd: from the dynamic address pool for 192.168.1.0/24
nd6_setmtu0: new link MTU on ng0 (576) is too small for IPv6
Jan 16 02:13:51 server routed[622]: write(rt_sock) RTM_ADD 192.168.0.68/32 -->192.168.0.1 metric=0 flags=0: File exists
Jan 16 02:13:51 server routed[622]: write(rt_sock) RTM_ADD 192.168.0.1/32 -->127.0.0.1 metric=0 flags=0: File exists
ipfw: 13998 Deny P:2 192.168.0.1 224.0.0.22 out via ng0
ipfw: 13998 Deny P:2 192.168.0.1 224.0.0.22 out via ng0
Jan 16 02:15:26 server routed[622]: static route 192.168.0.1/32 --> 192.168.0.1 impossibly lacks ifp
Jan 16 02:30:26 server routed[622]: 192.168.0.68/32 --> 192.168.0.1 disappeared from kernel
В логах мдп все хорошо, на соединение по мпд нат не использую..
"426 ?? Ss 0:00.76 /sbin/routed -q - это для чего?" - маршрутизация
rc.conf:
defaultrouter="XX.XX.XX.XX"
ipv6_enable="NO"
sendmail_enable="NO"
gateway_enable="YES"
hostname="rusgeolit"
ifconfig_rl0="inet XX.XX.XX.XX netmask 255.255.255.252"
ifconfig_ste0="inet 192.168.2.1 netmask 255.255.255.0"
ifconfig_vr0="inet 192.168.1.1 netmask 255.255.255.0"
keymap="ru.koi8-r"
nisdomainname="NO"
router="/sbin/routed"
router_enable="YES"
router_flags="-q"
natd_enable="YES"
natd_interface="rl0"
firewall_enable="YES"
firewall_type="MYRULES"
rpcbind_enable="YES"
sshd_enable="YES"
bruteblockd_enable="YES"
bruteblockd_table="1"
bruteblockd_flags="-s 600"
proftpd_enable="YES"
mpd_enable="YES"
apache22_enable="YES"
apache22_http_accept_enable="YES"
mysql_enable="YES"
squid_enable="YES"
dhcpd_enable="YES" # dhcpd enabled?
dhcpd_flags="-q" # command option(s)
dhcpd_conf="/usr/local/etc/dhcpd.conf" # configuration filer
dhcpd_ifaces="vr0" # ethernet interface(s)
dhcpd_withumask="022" # file creation maskr