pf, binat, rdr, and one ip

Daniel Bye freebsd-questions at slightlystrange.org
Wed Feb 9 11:16:48 UTC 2011


On Wed, Feb 09, 2011 at 09:08:53AM +1000, Da Rock wrote:
> On 02/09/11 01:18, Daniel Bye wrote:
> >On Wed, Feb 09, 2011 at 12:20:56AM +1000, Da Rock wrote:
> >   
> >>A very quick question.
> >>
> >>PF firewall. One static public IP. About 6 servers on the internal
> >>network (dmz). One server binat in the pf.conf, the rest redirected.
> >>
> >>Possible? Or would it die in the hole?
> >>     
> >I guess you're concerned about performance and resource usage? If so, this
> >may be helpful.
> >
> >http://www.openbsd.org/faq/pf/perf.html
> >
> >Dan
> >   
> Useful info to have, thanks. But no, I'm interested in if the binatting 
> will interfere with the rdr's (or vice versa).

Ah, I see. I don't know, is the straight answer - I've never needed to use
both together. A bit of idle googling seems to suggest it's possible, but
I don't have time right now to dig any deeper.

Dan

-- 
Daniel Bye
                                                                     _
                                              ASCII ribbon campaign ( )
                                         - against HTML, vCards and  X
                                - proprietary attachments in e-mail / \
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20110209/d104a38e/attachment.pgp


More information about the freebsd-questions mailing list