10.2-RELEASE not forwarding packets/NATing with pf

Mike Tancsa mike at sentex.net
Fri Sep 4 13:04:55 UTC 2015

On 9/4/2015 8:49 AM, Sergey Grigorian wrote:
> Mario,
> I load pf as a module, so pf.ko is loaded. This box runs a stock RELEASE kernel.
> What confuses me is that this setup works perfectly on 10.1, but stops working the second I boot into the 10.2-RELEASE-p2 kernel.

Any possibility of mismatched userland and kernel ?  I have a couple of
RELENG_10 boxes doing pf and forwarding just fine.

My home router is
10.2-STABLE  r287218 for example.

also, when its not working are you sure its an issue of forwarding not
working, or potentially its something to do with just pf ?

when its broken, what does
show ?

Can you test with the most basic of pf rules and see if its something to
do with pf's rules being different ?

What ethernet adapter are you using ? I see you have 'hn' in your config
and I am not familiar with that.


Mike Tancsa, tel +1 519 651 3400
Sentex Communications, mike at sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   http://www.tancsa.com/

More information about the freebsd-questions mailing list