NAT states

Artemiev Igor ai at bmc.brk.ru
Wed Oct 12 21:33:49 PDT 2005


On Wed, 12 Oct 2005 19:59:37 +0200
Daniel Hartmeier <daniel at benzedrine.cx> wrote:

> Because a state entry does not allow a packet to pass _through_ the
> firewall, but only to pass on one interface (the interface the state
> was created on), in general.
By default, if an interface is not specified, state operates on any
interface. State was created on "self" aka any local interface,
but didn`t match passing packets. 
I tried to set "set state-policy floating" explicitly, but to no effect.

-- 
iprefetch ai


More information about the freebsd-pf mailing list