Large scale NAT with PF - some weird problem

Milan Obuch freebsd-pf at dino.sk
Mon Jun 29 11:09:07 UTC 2015


On Mon, 29 Jun 2015 12:58:32 +0200
Ian FREISLICH <ian.freislich at capeaugusta.com> wrote:

> Milan Obuch wrote:
> > 
> > No, there were not much states per problematic IP, maybe just tens
> > of them for one or couple internal IPs. That's weird.
> 
> What's the output of 'pfctl -sa' (without the states).
> 
> Ian
> 

Well, it has some ~ 50k lines, and I see no issue currently. I will try
to catch it as soon as this issue reappears. Will keep you informed.

Milan


More information about the freebsd-pf mailing list