Please help with pf redirector

Max Laier max at love2party.net
Fri Apr 20 15:40:49 UTC 2007


Hello Alex,

On Thursday 19 April 2007 14:56, Alex Povolotsky wrote:
> I am trying to make kernel-only tcp round-robin proxy.
>
> The following setup
>
> rdr on em0 inet proto tcp from any to 89.108.66.9 port = smtp ->
> <outbound> port 25 round-robin
>
> seemed to me abequate, but it does not work. In states I see
>
> unknown-1717# pfctl -s state
> No ALTQ support in kernel
> ALTQ related functions disabled
> self tcp 89.108.65.126:25 <- 89.108.66.9:25 <- 88.212.205.2:53308
> CLOSED:SYN_SENT
>
> and that's all.

as I tried to explain in private mail, this is not nearly enough 
information to debug your problem.  You would need to provide at very 
least the configuration of the setup (i.e. how are the above boxes 
connected) and the routing table information (netstat -rnfinet) of all 
boxes involved.  In addition a tcpdump of both legs of the pf box 
wouldn't hurt, either.

-- 
/"\  Best regards,                      | mlaier at freebsd.org
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | mlaier at EFnet
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-pf/attachments/20070420/a3a35283/attachment.pgp


More information about the freebsd-pf mailing list