rdr + reply-to, some solution ?

Chris Buechler cbuechler at gmail.com
Mon Jun 28 23:30:39 UTC 2010


On Mon, Jun 28, 2010 at 6:24 PM, Luiz Gustavo S. Costa
<luizgustavo at luizgustavo.pro.br> wrote:
> hi Chris ! how are you?
>
> as it says here in Brazil: "I eat ball" :).
>
> pass in $if_int reply-to ($if_ext2 $gw_ext2) proto tcp from any to
> 192.168.1.100 port 80
>
> but still, the combination does not work
>

Then that's not the rule that's matching the traffic. Presuming it
worked previously when that rule wouldn't match the traffic, there
must be some other rule matching. You may need 'quick' there as well
depending on the rest of your ruleset and your intent.


More information about the freebsd-pf mailing list