From owner-freebsd-hackers@FreeBSD.ORG Sun Dec 21 20:40:04 2014 Return-Path: Delivered-To: hackers@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id B08B6288 for ; Sun, 21 Dec 2014 20:40:04 +0000 (UTC) Received: from mail-ob0-x231.google.com (mail-ob0-x231.google.com [IPv6:2607:f8b0:4003:c01::231]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 757242A94 for ; Sun, 21 Dec 2014 20:40:04 +0000 (UTC) Received: by mail-ob0-f177.google.com with SMTP id va2so18445270obc.8 for ; Sun, 21 Dec 2014 12:40:03 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:date:message-id:subject:from:to:content-type; bh=57XWaflaYAOa6xyvS21Qr6pbz0JPsjUS2DSMvEEHbo4=; b=U5RkrBHr/MKndyHtVBWuiqfKLTY1TFykhfKWi2Wu7huWAk5OvkWko8Ia9gO4bqnEmw 1lS22nKIz15QEqc6rkGL6EXsUwIXyB94AMZ+1mSaLkAAuUbp6YAcyi0bizuugJ97zWjk WNE5N3XhizHt95UVe3Hd7G5xoq0m8sQfaxvtJ+KXSBjvGgmuUtpjC6AY/M050YdNo1LL vQhu9o8SJhN6K4+QheZR8yw6YL1eEjh3ItOFy2YwKBJYYIdMEEteznUx6rHTKm3Fz7OB EnZfq5zqlCIGWHnm/bME+QX7XeUAn8YC8GRxXuasHiYGONgfWDI3cDxdU7ZNy0btDqZh Ppyw== MIME-Version: 1.0 X-Received: by 10.202.50.84 with SMTP id y81mr10513863oiy.122.1419194403794; Sun, 21 Dec 2014 12:40:03 -0800 (PST) Received: by 10.76.132.65 with HTTP; Sun, 21 Dec 2014 12:40:03 -0800 (PST) Date: Mon, 22 Dec 2014 07:40:03 +1100 Message-ID: Subject: Fun with PF & redirection From: Stephen Hocking To: hackers@freebsd.org Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 21 Dec 2014 20:40:04 -0000 Hi all, I'm using PF on a 10.1 box, and am trying to redirect a range of ports to a single port, with a rule like this: rdr on $ext_if proto tcp from any to any port 65334:5044 -> $spoof_host port $spoof_port spoof_host has been set to 127.0.0.1. This does not seem to work. Any ideas? Stephen