Large scale NAT with PF - some weird problem

Daniel Hartmeier daniel at benzedrine.ch
Mon Jun 29 08:27:02 UTC 2015


On Sun, Jun 28, 2015 at 10:06:09AM +0200, Milan Obuch wrote:

> So, now I am at 10.2-PRERELEASE, r284884, and the issue is still here.
> It is totally weird, just change of IP the device is being natted to
> makes the issue disappear for this particular customer, but as soon as
> this exact IP is used again, the issue is here again.

Do you have access to the upstream router?
Can you check its ARP table?

It could have a static ARP entry for this specific IP address, or there
could be an address conflict for that IP address...

Can't you tell us the network, netmask and the IP address?
Not even with the first octet redacted?

Daniel


More information about the freebsd-pf mailing list