Открыл фаервол:
===========/etc/rc.conf===========
# -- sysinstall generated deltas -- # Tue Jan 31 20:20:47 2012
# Created: Tue Jan 31 20:20:47 2012
# Enable network daemons for user convenience.
# Please make all changes to this file, not to /etc/defaults/rc.conf.
# This file now contains just the overrides from /etc/defaults/rc.conf.
defaultrouter="88.195.2.62"
gateway_enable="YES"
hostname="Server.BROZEX"
ifconfig_fxp0="inet 88.195.2.61 netmask 255.255.252.0"
ifconfig_em0="inet 172.16.0.1 netmask 255.255.252.0"
keymap="ru.koi8-r"
sshd_enable="YES"
#FIREWALL
firewall_enable="YES"
firewall_type="open"
#firewall_type="/etc/rc.firewall"
firewall_logging="YES"
#NAT
natd_enable="YES"
#natd_interface="fxp0"
natd_flags="-f /etc/natd.conf"
#ipnat_enable="YES"
#ipnat_program="/sbin/ipnat -CF -f"
#ipnat_rules="/etc/ipnat.rules"
#ipnat_flags=""
#DNS
named_enable="YES"
named_program="/usr/sbin/named"
named_flags="-u bind -c /etc/namedb/named.conf"
#DHCP
#dhcpd_enable="YES"
#dhcpd_flags="-q"
#dhcpd_ifaces="em0"
#dhcpd_conf="/usr/local/etc/dhcpd.conf"
#MYSQL
mysql_enable="YES"
#APACHE
apache22_enable="YES"
#SQUID
squid_enable="YES"
squid_pidfile="/var/run/squid/squid.pid"
#SAMS
sams_enable="YES"
#SENDMAIL
sendmail_enable="NO"
sendmail_submit_enable="NO"
sendmail_outbound_enable="NO"
sendmail_msp_queue_enable="NO"
#POSTFIX
postfix_enable="YES"
#DOVECOT
dovecot_enable="YES"
#FTP
proftpd_enable="YES"
Отключил лишние строчки
===========/etc/natd.conf===========
#same_ports yes
#use_sockets yes
#unregistered_only yes
interface fxp0
#port 199
redirect_port tcp 172.16.0.4:2221 49801
redirect_port tcp 172.16.0.4:3389 38888
redirect_port tcp 172.16.0.254:3389 3389
redirect_port tcp 172.16.0.254:21 21
redirect_port tcp 172.16.0.254:20 20
Все равно доступа по RDP нет, инет работает, пассивный режим FTP с редиректом тоже, что не так то?
Вот ipfw show:
00100 1344 201886 allow ip from any to 127.0.0.1
00200 4067114 227758404 allow ip from 127.0.0.1 to any
00300 10000 1803094 fwd 127.0.0.1,3128 tcp from 172.16.0.0/22 to any dst-port 80 via fxp0
00400 0 0 allow ip from any to any via lo0
00500 0 0 check-state
00600 2054290 5764154077 divert 8668 ip from any to any out via fxp0
00700 22886 13875614 divert 8668 ip from any to me in via fxp0
00800 2126902 5802067772 allow tcp from any to any established
00900 2566 165023 allow ip from 82.195.2.61 to any out xmit fxp0
01000 756 240740 allow udp from any 53 to any via fxp0
01100 0 0 allow udp from any to any dst-port 53 via fxp0
01200 0 0 allow tcp from any to 82.195.2.61 dst-port 80 in via fxp0 setup
01300 9 432 allow tcp from any to 172.16.0.1 dst-port 80 in via em0 setup
01400 56 4256 allow icmp from any to any out via fxp0 keep-state
01500 134 7496 allow icmp from any to any in via fxp0
01600 79 3808 allow tcp from any to any dst-port 110 via em0
01700 0 0 allow tcp from any to any dst-port 110 via fxp0
01800 9 432 allow tcp from any to any dst-port 25 via em0
01900 18 940 allow tcp from any to any dst-port 25 via fxp0
02000 0 0 allow tcp from any to any dst-port 389 via em0
02100 1490 77256 allow tcp from any to any dst-port 80 via em0
02200 395 19172 allow tcp from any to any dst-port 443 via em0
02300 4 192 allow tcp from any to any dst-port 21
02400 0 0 allow tcp from any 50100-50200 to any
02500 4 192 allow tcp from any to any dst-port 50100-50200
02600 0 0 allow tcp from any to any dst-port 2221 via em0
02700 0 0 allow tcp from any to any dst-port 49801 via fxp0
02800 0 0 allow tcp from any to any dst-port 49801 via em0
02900 0 0 allow tcp from any to any dst-port 1004 via em0
03000 38 4681 allow udp from any to any dst-port 87 via em0
03100 0 0 allow tcp from any to any dst-port 1111 via em0
03200 0 0 allow tcp from any to any dst-port 1119 via em0
03300 6 288 allow tcp from any to any dst-port 1239 via em0
03400 0 0 allow tcp from any to any dst-port 1389 via em0
03500 0 0 allow tcp from any to any dst-port 1494 via em0
03600 16 768 allow tcp from any to any dst-port 2041 via em0
03700 8 384 allow tcp from any to any dst-port 2042 via em0
03800 0 0 allow tcp from any to any dst-port 2106 via em0
03900 0 0 allow tcp from any to any dst-port 2225 via em0
04000 0 0 allow tcp from any to any dst-port 2226 via em0
04100 0 0 allow tcp from any to any dst-port 22273 via em0
04200 0 0 allow tcp from any to any dst-port 2512 via em0
04300 0 0 allow tcp from any to any dst-port 2513 via em0
04400 0 0 allow tcp from any to any dst-port 2593 via em0
04500 0 0 allow tcp from any to any dst-port 2802 via em0
04600 0 0 allow tcp from any to any dst-port 2897 via em0
04700 0 0 allow tcp from any to any dst-port 30025 via em0
04800 0 0 allow tcp from any to any dst-port 30110 via em0
04900 0 0 allow tcp from any to any dst-port 3279 via em0
05000 0 0 allow tcp from any to any dst-port 3306 via em0
05100 0 0 allow tcp from any to any dst-port 33333 via em0
05200 0 0 allow tcp from any to any dst-port 3345 via em0
05300 0 0 allow tcp from any to any dst-port 3345 via fxp0
05400 0 0 allow tcp from any to any dst-port 3724 via em0
05500 0 0 allow tcp from any to any dst-port 3732 via em0
05600 0 0 allow tcp from any to any dst-port 4080 via em0
05700 0 0 allow tcp from any to any dst-port 4081 via em0
05800 73 3504 allow tcp from any to any dst-port 4455 via em0
05900 0 0 allow tcp from any to any dst-port 4455 via fxp0
06000 0 0 allow tcp from any to any dst-port 4466 via em0
06100 0 0 allow tcp from any to any dst-port 4477 via em0
06200 0 0 allow tcp from any to any dst-port 4480 via em0
06300 0 0 allow tcp from any to any dst-port 465 via em0
06400 4 192 allow tcp from any to any dst-port 5222 via em0
06500 0 0 allow tcp from any to any dst-port 55154 via em0
06600 0 0 allow tcp from any to any dst-port 5670 via em0
06700 0 0 allow tcp from any to any dst-port 5680 via em0
06800 0 0 allow tcp from any to any dst-port 5690 via em0
06900 0 0 allow tcp from any to any dst-port 5690 via fxp0
07000 0 0 allow tcp from any to any dst-port 587 via em0
07100 0 0 allow tcp from any to any dst-port 6112 via em0
07200 0 0 allow tcp from any to any dst-port 6667 via em0
07300 0 0 allow tcp from any to any dst-port 6881 via em0
07400 0 0 allow tcp from any to any dst-port 6999 via em0
07500 0 0 allow tcp from any to any dst-port 7001 via em0
07600 0 0 allow tcp from any to any dst-port 7007 via em0
07700 0 0 allow tcp from any to any dst-port 7777 via em0
07800 0 0 allow tcp from any to any dst-port 8080 via em0
07900 0 0 allow tcp from any to any dst-port 8081 via em0
08000 0 0 allow tcp from any to any dst-port 8093 via em0
08100 0 0 allow tcp from any to any dst-port 8129 via em0
08200 0 0 allow tcp from any to any dst-port 8420 via em0
08300 0 0 allow tcp from any to any dst-port 8888 via em0
08400 0 0 allow tcp from any to any dst-port 8889 via em0
08500 0 0 allow tcp from any to any dst-port 9014 via em0
08600 148 7828 allow icmp from any to any via em0
08700 131 42983 allow udp from any to any dst-port 67,68 via em0
08800 3799 549249 allow udp from any to any via em0
08900 190 24714 allow udp from any to any via fxp0
09000 1 48 allow tcp from any to any dst-port 22 via em0
09100 0 0 allow tcp from any to any dst-port 5900,5500 via em0
09200 999 48164 deny ip from any to any
65535 3 128 allow ip from any to any