NAT states

Artemiev Igor ai at bmc.brk.ru
Tue Oct 11 04:54:26 PDT 2005


On Tue, 11 Oct 2005 05:37:48 -0500
"Travis H." <solinym at gmail.com> wrote:
> Oh, also another thing; do you initialize table <locals> somewhere?
> If it is empty, nothing will match NAT rule.
NAT state didn`t match, i see it by pfctl -vs state and packet dropped. 
Consequently, nat is not working without an explicit rule for incoming
traffic lan->internet on $lanif, and incoming internet->lan on $extif,
in spite of created state and "pass" existing in nat rule. Why is that
so?

-- 
iprefetch ai


More information about the freebsd-pf mailing list