>cat /etc/natd.conf ?
>cat /etc/rc.conf | grep natd ?
>ifconfig ?
cпасибо за отклик, пока не поборолся
дело в том, что нат работает и когда все эти правила заменяем firewall_type=open, то всё в порядке# less natd.conf
same_ports yes
use_sockets yes
#less rc.conf
sshd_enable="YES"
inetd_enable="YES"
sendmail_enable="YES"
sendmail_flags="-bd -q30m"
ifconfig_rl1_alias0="inet 192.168.0.1/27"
ifconfig_rl2="inet 213.186.221.84/30"
defaultrouter="213.186.221.85"
hostname="imedia"
named_enable="YES"
#named_flags="-u bind -g bind"
firewall_enable="YES"
#firewall_type="open"
firewall_type="imedia"
natd_enable="YES"
# ifconfig
rl0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
options=8<VLAN_MTU>
inet 192.168.1.2 netmask 0xffffff00 broadcast 192.168.1.255
ether 00:02:44:8f:e3:2e
media: Ethernet autoselect (none)
status: no carrier
rl1: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
options=8<VLAN_MTU>
inet 192.168.0.1 netmask 0xffffffe0 broadcast 192.168.0.31
ether 00:80:48:1f:d0:5c
media: Ethernet autoselect (100baseTX <full-duplex>)
status: active
rl2: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
options=8<VLAN_MTU>
inet 213.186.221.84 netmask 0xfffffffc broadcast 213.186.221.39
ether 00:0b:6a:67:b3:87
media: Ethernet autoselect (100baseTX <full-duplex>)
status: active